Close Menu
TechTost
  • AI
  • Apps
  • Crypto
  • Fintech
  • Hardware
  • Media & Entertainment
  • Security
  • Startups
  • Transportation
  • Venture
  • Recommended Essentials
What's Hot

A 20-minute pitch wins Lachy Groom-backed Indian startup Pronto

Lucid Motors doesn’t know how many EVs it will build this year

Barry Diller trusts Sam Altman. But “trust is irrelevant” as AGI approaches, he says.

Facebook X (Twitter) Instagram
  • About Us
  • Contact Us
  • Privacy Policy
  • Terms and Conditions
  • Disclaimer
Facebook X (Twitter) Instagram
TechTost
Subscribe Now
  • AI

    Barry Diller trusts Sam Altman. But “trust is irrelevant” as AGI approaches, he says.

    7 May 2026

    Ethos Raises $22.75M From a16z For Its Experience Network With Voice Integration

    6 May 2026

    SAP bets $1.16 billion on 18-month-old German AI lab and says yes to NemoClaw

    6 May 2026

    ElevenLabs lists BlackRock, Jamie Foxx and Longoria as new investors

    5 May 2026

    OpenAI host Cerebras is on track for a major IPO

    5 May 2026
  • Apps

    Snap says $400M deal with Perplexity ‘ended amicably’

    7 May 2026

    Threads finally brings messaging to the web

    6 May 2026

    Bumble’s paying users are slipping as it bets on an overhaul later this year

    6 May 2026

    Meta will use artificial intelligence to analyze height and bone structure to detect whether users are underage

    5 May 2026

    Image AI models are now driving app development, surpassing chatbot upgrades

    5 May 2026
  • Crypto

    As crypto cools, a16z crypto raises $2.2 billion in capital

    6 May 2026

    Coinbase to lay off 14% of staff as part of broader restructuring

    5 May 2026

    British cryptographer Adam Back denies NYT report that he is Bitcoin creator Satoshi Nakamoto

    9 April 2026

    Hackers stole over $2.7 billion in crypto in 2025, data shows

    23 December 2025

    New report examines how David Sachs may benefit from Trump administration role

    1 December 2025
  • Fintech

    Robinhood’s venture fund IPO attracted 150,000+ private investors, CEO says

    7 May 2026

    PayPal says it’s “becoming a tech company again” — that’s AI

    6 May 2026

    Stripe introduces Link, a digital wallet that autonomous AI agents can also use

    1 May 2026

    Y Combinator alum Skio sells for $105 million in cash, raised only $8 million, founder says

    1 May 2026

    Amazon, Meta join the fight to end Google Pay and PhonePe’s dominance in India

    30 April 2026
  • Hardware

    Apple to pay $250 million to settle lawsuit over Siri’s lagging AI features

    7 May 2026

    reMarkable’s new Paper Pure tablet goes back to basics with a monochrome display

    6 May 2026

    Altara secures $7 million to bridge the data gap slowing the natural sciences

    6 May 2026

    This tiny, magnetic e-reader could keep you from doomscrolling

    4 May 2026

    Apple surprised by AI-driven demand for Macs

    1 May 2026
  • Media & Entertainment

    Netflix delays Greta Gerwig’s ‘Narnia’ for big theatrical push to 2027

    2 May 2026

    Roku’s $3 streaming service Howdy hits 1 million subscribers, per recent report

    29 April 2026

    Australia forces Big Tech companies to pay for news or face 2.25% tax.

    28 April 2026

    India’s app market is booming — but global platforms are raking in most of the profits

    23 April 2026

    YouTube extends its AI similarity detection technology to celebrities

    21 April 2026
  • Security

    DOJ says ransomware gang exploited Russian government databases

    6 May 2026

    Hackers steal student data during breach at education tech giant Instructure

    6 May 2026

    Kaspersky Suspects Chinese Hackers Put Backdoor in Daemon Tools in ‘Broad’ Attack

    5 May 2026

    The US government is warning of a serious CopyFail bug affecting major versions of Linux

    5 May 2026

    Hackers are still exploiting the cPanel bug to gain control of thousands of websites

    4 May 2026
  • Startups

    A 20-minute pitch wins Lachy Groom-backed Indian startup Pronto

    7 May 2026

    3 days left to lock in 50% off a second ticket to Disrupt 2026

    6 May 2026

    India’s first GenAI unicorn shifts to cloud services as AI model ambitions face reality

    5 May 2026

    FDA Approval, Fundraising and the Reality of Building Healthcare According to BioticsAI Founder

    1 May 2026

    Legal AI startup Legora hits $5.6 billion valuation, and its battle with Harvey just got hotter

    1 May 2026
  • Transportation

    Lucid Motors doesn’t know how many EVs it will build this year

    7 May 2026

    Aurora lands deal with McLane to run driverless truck routes in Texas

    6 May 2026

    Nuro gets driverless test license ahead of Uber’s robotaxi service launch

    6 May 2026

    Moment Energy raises $40M to meet ‘infinite energy demand’ with EV batteries

    5 May 2026

    Ouster’s new color lidar is coming to replace cameras

    4 May 2026
  • Venture

    All your M&A questions will be answered at Disrupt 2026

    6 May 2026

    ElevenLabs lists BlackRock, Jamie Foxx and Eva Longoria as new investors

    6 May 2026

    Get 50% off a second Disrupt 2026 pass to bid more, faster

    5 May 2026

    Nicolas Sauvage bets on the boring parts of AI

    4 May 2026

    Musely secures $360 million from General Catalyst without giving up equity

    2 May 2026
  • Recommended Essentials
TechTost
You are at:Home»Security»US gives federal agencies 48 hours to take down flawed Ivanti VPN technology
Security

US gives federal agencies 48 hours to take down flawed Ivanti VPN technology

techtost.comBy techtost.com2 February 202403 Mins Read
Share Facebook Twitter Pinterest LinkedIn Tumblr Email
Us Gives Federal Agencies 48 Hours To Take Down Flawed
Share
Facebook Twitter LinkedIn Pinterest Email

US cybersecurity agency CISA ordered federal agencies to urgently disconnect Ivanti VPN devices due to the risk of malicious exploitation due to multiple software flaws.

In an update to one emergency directive First published last week, CISA now imposes on all federal civilian executive branch agencies — a list that includes National Security and the Capital Market Commission — disconnect all Ivanti VPN devices due to the “serious threat” posed by numerous zero-day vulnerabilities currently being exploited by malicious hackers.

While federal agencies are typically given weeks to patch vulnerabilities, CISA ordered Ivanti VPN devices disconnected within 48 hours.

“Companies running affected products — Ivanti Connect Secure or Ivanti Policy Secure solutions — should immediately perform the following tasks: As soon as possible and no later than 11:59 p.m. on Friday, February 2, 2024, disconnect all instances of Ivanti Connect Secure and Ivanti Policy Secure Solutions from agency networks,” the emergency directive, which was updated Wednesday, said.

CISA’s warning comes hours after Ivanti said it had uncovered a third zero-day flaw that it is actively exploiting.

Security researchers say Chinese state-backed hackers have exploited at least two of the Ivanti Connect Secure flaws — tracked as CVE-2023-46805 and CVE-2024-21887 — since December. Ivanti said Wednesday it had discovered two additional flaws — CVE-2024-21888 and CVE-2024-21893 — the latter of which has already been used in “targeted” attacks. CISA previously said it “observed some initial targeting of federal agencies.”

Steven Adair, founder of cybersecurity firm Volexity, told TechCrunch on Thursday that at least 2,200 Ivanti devices have been compromised to date. That’s an increase of 500 from the 1,700 number the company tracked earlier this month, though Volexity notes that “the total number is likely much higher.”

In the emergency directive update, CISA told agencies that after disconnecting vulnerable Ivanti products, companies should continue hunting for threats on all systems connected to the affected device, monitor authentication or identity management services that they could be exposed and continue to control privileges level access accounts.

CISA has also provided instructions for bringing the Ivanti devices back online, but has not given federal agencies a deadline to do so.

“CISA has essentially directed the federal agencies to a method for developing what could be considered a completely new and improved installation of [Ivanti Connect Secure] VPN devices as a requirement to get them back online,” Adair told TechCrunch. “If an organization wants to be completely confident that their device is operating from a known good and trusted state, this is probably the best course of action.”

Ivanti this week released patches for some software versions affected by the three actively exploited vulnerabilities, after CISA warned in advisory that malicious attackers had bypassed the mitigations published for the first two vulnerabilities. Ivanti also urged customers to factory reset devices before the patch to prevent hackers from gaining a foothold in their network.

agencies CISA cyber security Federal flawed Hacking hours ivanti technology VPN
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
Previous ArticleActivist investors flock to Etsy
Next Article Google launches an image generator with artificial intelligence
bhanuprakash.cg
techtost.com
  • Website

Related Posts

DOJ says ransomware gang exploited Russian government databases

6 May 2026

Hackers steal student data during breach at education tech giant Instructure

6 May 2026

Kaspersky Suspects Chinese Hackers Put Backdoor in Daemon Tools in ‘Broad’ Attack

5 May 2026
Add A Comment

Leave A Reply Cancel Reply

Don't Miss

A 20-minute pitch wins Lachy Groom-backed Indian startup Pronto

7 May 2026

Lucid Motors doesn’t know how many EVs it will build this year

7 May 2026

Barry Diller trusts Sam Altman. But “trust is irrelevant” as AGI approaches, he says.

7 May 2026
Stay In Touch
  • Facebook
  • YouTube
  • TikTok
  • WhatsApp
  • Twitter
  • Instagram
Fintech

Robinhood’s venture fund IPO attracted 150,000+ private investors, CEO says

7 May 2026

PayPal says it’s “becoming a tech company again” — that’s AI

6 May 2026

Stripe introduces Link, a digital wallet that autonomous AI agents can also use

1 May 2026
Startups

A 20-minute pitch wins Lachy Groom-backed Indian startup Pronto

3 days left to lock in 50% off a second ticket to Disrupt 2026

India’s first GenAI unicorn shifts to cloud services as AI model ambitions face reality

© 2026 TechTost. All Rights Reserved
  • About Us
  • Contact Us
  • Privacy Policy
  • Terms and Conditions
  • Disclaimer

Type above and press Enter to search. Press Esc to cancel.