cognitive cybersecurity intelligence

News and Analysis

Search

Active Exploitation of Ivanti VPN 0-Day Vulnerability (CVE-2025-0282)

Ivanti has disclosed two severe vulnerabilities affecting its Connect Secure VPN appliances. The vulnerabilities have raised concerns due to potential network breaches. One of these, CVE-2025-0282, is being actively exploited and enables remote code execution without authentication. Mandiant, a cybersecurity firm, has identified various malware families associated with this exploitation. While one of the malware, SPAWN, has been linked to Chinese actor UNC5337, attribution for all activity related to the vulnerability is yet to be confirmed.

Source: cybersecuritynews.com –

Subscribe to newsletter

Subscribe to HEAL Security Dispatch for the latest healthcare cybersecurity news and analysis.

More Posts

What AI Can Do for Pharmacist Burnout

Pharmacists are under more strain than ever due to increasing patient demand and administrative tasks, leading to burnout and staff retention issues. The situation is