Chinese State Hackers Exploiting Newly Disclosed Ivanti Flaw
A Chinese state threat actor is actively exploiting a newly disclosed critical Ivanti vulnerability, according to Mandiant researchers. The suspected espionage actor has been targeting CVE-2025-22457, a buffer overflow vulnerability that can lead to attackers achieving remote code execution. The researchers have also observed the deployment of two-newly identified malware families by the group, tracked as UNC5221, following successful exploitation. A patch for CVE-2025-22457 was released on February 11, 2025, in Ivanti Connect Secure (ICS)…
Read More