cognitive cybersecurity intelligence

News and Analysis

Search

Mandiant warns of attacks on newly-disclosed Ivanti remote takeover threat

Google’s Mandiant team has issued an alert about a remote code execution flaw in the Ivanti Connect Secure VPN platform. The vulnerability, designated CVE-2025-22457, is being exploited by Chinese threat group UNC5221, allowing it to take full control over target appliances. Although a patch exists, the flaw, which was initially believed to be less serious, has been active since mid-March. Administrators are urged to update their firmware to prevent attacks.

Source: www.scworld.com –

Subscribe to newsletter

Subscribe to HEAL Security Dispatch for the latest healthcare cybersecurity news and analysis.

More Posts