U.S. software giant Ivanti has warned that a zero-day vulnerability in its widely-used enterprise VPN appliance has been exploited to compromise the networks of its corporate customers.
Ivanti confirmed last week that hackers were exploiting a vulnerability in Connect Secure, its widely used enterprise VPN appliance, to break into customers’ networks. Ivanti hasn’t said how ...
For customers that perform a test that “shows signs of compromise,” they should factory reset the VPN device before putting the appliance back online with version 22.7R2.5, the company said.
UNC5337 is a “China-nexus cluster of espionage activity including operations that compromised Ivanti Connect Secure VPN appliances as early as Jan. 2024 and most recently as Dec. 2024,” the ...