cognitive cybersecurity intelligence

News and Analysis

Search

Ivanti Connect Secure zero-day exploited since mid-December (CVE-2025-0282)

Mandiant researchers have found that zero-day attacks on the Ivanti Connect Secure (ICS) vulnerability were first spotted in mid-December 2024. The attacks seem to originate from China-linked espionage actors UNC5337 and UNC5221. The attackers used malware and exploited the ICS system to gain access to organizational networks. To mitigate the problem, Ivanti recommends customers use monitoring tools in conjunction with their Integrity Checker Tool, while affected appliances should be factory reset before installing a fixed version.

Source: www.helpnetsecurity.com –

Subscribe to newsletter

Subscribe to HEAL Security Dispatch for the latest healthcare cybersecurity news and analysis.

More Posts