The French Government hit by Chinese hackers who exploit Ivanti -Security Error


  • Three Zero-Day Missing in Ivanti CSA solutions were abused to get hold of login credentials
  • The group probably sold access to French government units
  • Researchers attribute the attacks to Chinese state -sponsored misunderstandings

At the end of 2024, Chinese state-sponsored threat actors abused several zero-day vulnerabilities in Ivanti Cloud Services Appliance (CSA) devices to access French authorities, as well as several commercial entities such as Telcos, Financing and Transport Organizations.

The news was recently confirmed by the French National Agency for Security in Information Systems (Anssi), which noticed threat players abused three safety vulnerability in Ivanti CSA units: CVE-2024-8963, CVE-2024-9380 and CVE-2024-8190.

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top