Hackers are exploiting a new Ivanti VPN security bug to hack into company networks | TechCrunch
Briefly

Ivanti's critical zero-day vulnerability CVE-2025-0282 allows attackers to exploit its widely-used VPN appliances without authentication, jeopardizing corporate networks globally.
The exploit of CVE-2025-0282 was detected by the Ivanti Integrity Checker Tool, indicating that threat actors are actively taking advantage of this vulnerability.
Ivanti confirmed that while a patch is available for its Connect Secure appliance, updates for Policy Secure and ZTA Gateways will not be available until January 21.
This vulnerability is part of a concerning trend, as Ivanti has previously pledged to enhance its security processes following multiple mass-hack incidents targeting its products.
Read at TechCrunch
[
|
]