Chinese cyber threat group UNC5337 is once again exploiting vulnerabilities in Ivanti remote access devices. This follows a year of exploits against Ivanti appliances, and Ivanti’s promise to secure its design. New vulnerabilities have been found in Ivanti’s Connect Secure (ICS), which also affects Policy Secure and Neurons for Zero Trust Access (ZTA) gateways. Another less severe vulnerability, yet to be exploited, that could allow privilege escalation on a targeted device has also been discovered.
Two teenage suspected Scattered Spider members charged in UK over TfL hack
Alexander Martin reports: Two suspected members of the Scattered Spider cybercrime collective have been arrested and charged in the United Kingdom following an investigation into