Close Menu
TechTost
  • AI
  • Apps
  • Crypto
  • Fintech
  • Hardware
  • Media & Entertainment
  • Security
  • Startups
  • Transportation
  • Venture
  • Recommended Essentials
What's Hot

Hugging Face confirms breach of internal datasets and credentials, prompts users to take action

Prentis, new AI lab co-founded by Reid Hoffman and Mark Pincus in talks to raise $100 million

SpaceX launches new V3 Starlink satellites but suffers another booster failure

Facebook X (Twitter) Instagram
  • About Us
  • Contact Us
  • Privacy Policy
  • Terms and Conditions
  • Disclaimer
Facebook X (Twitter) Instagram
TechTost
Subscribe Now
  • AI

    I tested OpenAI’s new AI keyboard — which will be fun for some coders and a little overwhelming for everyone else

    25 July 2026

    Anthropic Launches Opus 5 | TechCrunch

    24 July 2026

    How AI guardrails are hindering the work of aggressive cybersecurity researchers

    24 July 2026

    Runway launches AI model router as production media fills up

    23 July 2026

    Google justifies its massive AI spending with a thriving cloud business

    23 July 2026
  • Apps

    Vietnam seeks to restrict social media for children. Here are the growing number of other countries doing the same

    25 July 2026

    India’s move against Jack Dorsey’s Bitchat sparks legal debate

    24 July 2026

    Patreon lays off 20% of its workforce

    24 July 2026

    OpenAI makes ChatGPT Health available to all US users

    23 July 2026

    Yope raises $12.3 million to build a private social network without algorithms or ads

    23 July 2026
  • Crypto

    Sam Altman’s biometrics startup World raises $52.5 million through crypto sale

    24 July 2026

    Venice AI goes unicorn with $65M Series A as first privacy AI platform takes off

    1 July 2026

    Crypto Exchange OKX wants AI agents to hire and pay each other

    30 June 2026

    Startup Battlefield 200 applications close today

    27 May 2026

    5 days left: Save up to $410 on Disrupt 2026 passes

    25 May 2026
  • Fintech

    TechCrunch Disrupt 2026’s new Smart Money Stage explores fintech, payments, artificial intelligence and everything

    25 July 2026

    Don’t want to invest in Elon Musk? Two new ETFs expressly exclude him

    10 July 2026

    India’s payments chief believes artificial intelligence will play a big part in the next era of digital payments development

    28 June 2026

    Early Bird pricing ends tonight for the Founder Summit

    26 June 2026

    4 days left to save up to $190 on Founder Summit 2026

    23 June 2026
  • Hardware

    AI chip startup Etched defies skeptics, hits $10.3 billion valuation from big-name investors

    24 July 2026

    After a shocking quarter, IBM insists that artificial intelligence is not killing the mainframe

    23 July 2026

    Light made a flip phone — it’s colorful and cheap

    22 July 2026

    Apple is partnering with Klarna to launch a rental program for iPhones, iPads and Macs

    22 July 2026

    The Xteink X4 Pro could be the tiny e-reader of your dreams

    21 July 2026
  • Media & Entertainment

    Amazon brings games to Prime Video

    24 July 2026

    SoundCloud acquires decentralized music platform Nina Protocol months after its shutdown

    23 July 2026

    What you need to know about Warner Bros.’ landmark Discovery sale

    22 July 2026

    AI and the rise of the universal entertainment app

    22 July 2026

    Judge blocks $110 billion Paramount-Warner Bros. merger

    21 July 2026
  • Security

    Hugging Face confirms breach of internal datasets and credentials, prompts users to take action

    25 July 2026

    US accuses American of allegedly wiping his phone using a passcode ‘forcibly’ during border search

    24 July 2026

    If you pay a hacker’s ransom, chances are they’ll come back for more

    24 July 2026

    The US government says hackers linked to Iran are disrupting US water and energy providers

    23 July 2026

    How OpenAI’s human error led to the AI-powered Hugging Face hack

    22 July 2026
  • Startups

    Prentis, new AI lab co-founded by Reid Hoffman and Mark Pincus in talks to raise $100 million

    25 July 2026

    Meet the judges who will crown Australia’s next startup

    24 July 2026

    AegisAI, founded by ex-Google security execs, raises $36M to stop AI-based spearfishing

    23 July 2026

    ServiceNow bets $40M on Indian banking software specialist to expand push into financial services

    23 July 2026

    Bluecore Energy raises $10 million to build portable nuclear reactors on barges

    21 July 2026
  • Transportation

    SpaceX launches new V3 Starlink satellites but suffers another booster failure

    25 July 2026

    Tesla’s door handles may prompt new safety rules in the US

    24 July 2026

    Tesla’s robotaxis moves in reverse

    23 July 2026

    Tesla Spending Soars as Cybercab, Semi, Megapack Production Schedule Slips

    23 July 2026

    As EVs slow, Sila raises $300M to expand battery materials factory

    22 July 2026
  • Venture

    Edtech platform raises $4.5 million to help teach students how to code vibe

    23 July 2026

    Travis Kalanick’s robotics company raises $1.7 billion, led by a16z

    23 July 2026

    Cascade raises $3.5 million to help construction companies find and win projects

    22 July 2026

    StrictlyVC returns to New York on September 10 to celebrate a huge year for the city’s startup community

    21 July 2026

    Startup Inference Infinity raises $15 million from researchers Touring Capital, OpenAI and Anthropic

    20 July 2026
  • Recommended Essentials
TechTost
You are at:Home»Security»Hackers are starting to exploit Ivanti VPN zero-day flaws en masse
Security

Hackers are starting to exploit Ivanti VPN zero-day flaws en masse

techtost.comBy techtost.com21 January 202403 Mins Read
Share Facebook Twitter Pinterest LinkedIn Tumblr Email
Hackers Are Starting To Exploit Ivanti Vpn Zero Day Flaws En
Share
Facebook Twitter LinkedIn Pinterest Email

Malicious hackers have begun mass exploiting two critical zero-day vulnerabilities in Ivanti’s widely used enterprise VPN appliance.

That’s according to cybersecurity firm Volexity, which first reported last week that Chinese-backed hackers were exploiting the two unpatched flaws in Ivanti Connect Secure — tracked as CVE-2023-46805 and CVE-2024-21887 — break into customer networks and steal information. At the time, Ivanti said it knew of “fewer than 10 customers” affected by the zero-day flaws, which were described as such since Ivanti didn’t have time to fix the flaws before they were exploited.

In an updated blog post published on MondayVolexity says it now has evidence of mass exploitation.

According to Volexity, more than 1,700 Ivanti Connect Secure devices worldwide have been deployed so far, impacting organizations in the aerospace, banking, defense, government and telecommunications industries.

“Victims are globally distributed and vary greatly in size, from small businesses to some of the largest organizations in the world, including many Fortune 500 companies across multiple industries,” Volexity said. The security firm’s researchers added that Ivanti VPN devices were “indiscriminately targeted,” with corporate victims around the world.

But Volexity notes that the number of compromised organizations is likely to be much higher. Shadowserver Foundation non-profit security threat detector has data showing more than 17,000 Ivanti VPN devices visible online worldwide, including more than 5,000 devices in the United States.

Ivanti confirmed in its updated opinion on Tuesday that its own findings are “consistent” with Volexity’s new observations, and that the massive breaches appear to have started on January 11, a day after Ivanti’s vulnerabilities were disclosed. In a statement provided through PR agency MikeWorldWide, Ivanti told TechCrunch that it had “seen a spike in threat actor activity and security researcher scans.”

When reached Tuesday, Volexity spokeswoman Kristel Faris told TechCrunch that the security firm is in contact with Ivanti, which is “responding to an increase in support requests as quickly as possible.”

Despite the massive exploit, Ivanti has yet to release patches. Ivanti said it plans to release fixes on an “incremental” basis starting the week of January 22. Meanwhile, Administrators are advised to implement mitigation measures provided by Ivanti to all affected VPN devices on their network. Ivanti recommends that administrators reset passwords and API keys and revoke and reissue any certificates stored on the affected devices.

No ransomware… yet

Volexity initially attributed the exploit of the two Ivanti zero-days to a Chinese-backed hacking group that goes by the name UTA0178. Volexity said it had evidence of an exploit as early as December 3.

Mandiant, where it is also monitors the exploitation of Ivanti vulnerabilitiessaid it has not linked the exploit to a previously known hacking group, but said its findings — combined with Volexity — lead Mandiant to attribute the hacks to “an espionage-motivated APT campaign,” suggesting involvement with its support government.

Volexity he said this week that he has seen additional hacking groups — specifically one he calls UTA0188 — exploiting the flaws to compromise vulnerable devices, but declined to share additional details about the group — or their motivations — when asked by TechCrunch.

Volexity told TechCrunch that it has seen no evidence that ransomware is involved in the mass attacks at this point. “However, we fully expect this to happen if the proof-of-concept code is made public,” Faris added.

Security researchers have has already pointed out the existence of proof-of-concept code able to take advantage of Ivanti’s zero days.

exploit flaws hackers Hacking ivanti masse starting VPN zero day zeroday
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
Previous ArticleWhat happened to the Artifact? | TechCrunch
Next Article Amazon’s iRobot deal could be blocked by the European Union
bhanuprakash.cg
techtost.com
  • Website

Related Posts

Hugging Face confirms breach of internal datasets and credentials, prompts users to take action

25 July 2026

US accuses American of allegedly wiping his phone using a passcode ‘forcibly’ during border search

24 July 2026

If you pay a hacker’s ransom, chances are they’ll come back for more

24 July 2026
Add A Comment

Leave A Reply Cancel Reply

Don't Miss

Hugging Face confirms breach of internal datasets and credentials, prompts users to take action

25 July 2026

Prentis, new AI lab co-founded by Reid Hoffman and Mark Pincus in talks to raise $100 million

25 July 2026

SpaceX launches new V3 Starlink satellites but suffers another booster failure

25 July 2026
Stay In Touch
  • Facebook
  • YouTube
  • TikTok
  • WhatsApp
  • Twitter
  • Instagram
Fintech

TechCrunch Disrupt 2026’s new Smart Money Stage explores fintech, payments, artificial intelligence and everything

25 July 2026

Don’t want to invest in Elon Musk? Two new ETFs expressly exclude him

10 July 2026

India’s payments chief believes artificial intelligence will play a big part in the next era of digital payments development

28 June 2026
Startups

Prentis, new AI lab co-founded by Reid Hoffman and Mark Pincus in talks to raise $100 million

Meet the judges who will crown Australia’s next startup

AegisAI, founded by ex-Google security execs, raises $36M to stop AI-based spearfishing

© 2026 TechTost. All Rights Reserved
  • About Us
  • Contact Us
  • Privacy Policy
  • Terms and Conditions
  • Disclaimer

Type above and press Enter to search. Press Esc to cancel.