Ivanti products in attackers’ crosshairs: Multiple Ivanti products have been targeted by attackers over the past year, especially by state-sponsored cyberespionage groups who developed zero-day exploits for them.Back in January Ivanti patched a critical remote code execution flaw in its Connect Secure SSL VPN appliance that a Chinese APT group had exploited as a zero-day since at least mid-December.That same group had exploited zero-day flaws in the same product one year prior.
First seen on csoonline.com
Jump to article: www.csoonline.com/article/3843301/ivanti-epm-vulnerabilities-actively-exploited-in-the-wild-cisa-warns.html