Ivanti warns that another critical security flaw is under attack


  • Ivanti discloses two security vulnerabilities, including one of critical severity
  • One of the failures was being misused as a zero-day by a Chinese threat actor
  • Researchers uncovered never-before-seen malware deployed in the attack

Ivanti has warned customers about a critical vulnerability affecting their VPN appliances that is being actively exploited in the wild to drop malware.

In a security advisory, Ivanti said it recently disclosed two vulnerabilities — CVE-2025-0282 and CVE-2025-0283 — both of which affect Ivanti Connect Secure VPN appliances.

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top