Mandiant researchers have found that zero-day attacks on the Ivanti Connect Secure (ICS) vulnerability were first spotted in mid-December 2024. The attacks seem to originate from China-linked espionage actors UNC5337 and UNC5221. The attackers used malware and exploited the ICS system to gain access to organizational networks. To mitigate the problem, Ivanti recommends customers use monitoring tools in conjunction with their Integrity Checker Tool, while affected appliances should be factory reset before installing a fixed version.

Man who stole 2 gold bars from Colorado woman in malware scam sentenced to 6 years in prison
Sagar Patel, 27, has been sentenced to six years in prison by a Colorado judge for stealing two gold bars from a 79-year-old woman. She