CISA marks some more serious Ivanti -Software Error, so patch now


  • CISA warns attackers chain CVE-2025-4427 and CVE-2025-4428 to violate Ivanti EPMM Systems
  • Malware was delivered via electric injection and reconstructed from base64-coded payload
  • CISA did not confirm attribution; Reports suggest possible Chinese targeting against Australian device

American cyber security and infrastructure security agency (CISA) warns organizations of two patched Ivanti deficiencies bound together in real life.

In a new security advice, CISA said it was tipped by cyber criminals using CVE-2025-4427 and CVE-2025-4428 BEATH AFFEEE IVANTIS ENDPOINT Manager Mobile (EPMM) Solutions to gain initial access.

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top