Technology NewsTechnology NewsTechnology News
  • Computing
  • AI
  • Robotics
  • Cybersecurity
  • Electric Vehicle
  • Wearables
  • Gaming
  • Space
Reading: Chinese-Linked Group Exploits Ivanti VPN Vulnerability in Multiple Attacks
Share
Font ResizerAa
Technology NewsTechnology News
Font ResizerAa
Search
  • Computing
  • AI
  • Robotics
  • Cybersecurity
  • Electric Vehicle
  • Wearables
  • Gaming
  • Space
Follow US
  • Cookie Policy (EU)
  • Contact
  • About
© 2025 NEWSLINKER - Powered by LK SOFTWARE
Cybersecurity

Chinese-Linked Group Exploits Ivanti VPN Vulnerability in Multiple Attacks

Highlights

  • UNC5221 exploits Ivanti VPN vulnerability CVE-2025-22457.

  • Limited customers with older Ivanti versions are affected.

  • Ivanti urges immediate updates to secure systems.

Samantha Reed
Last updated: 4 April, 2025 - 2:09 am 2:09 am
Samantha Reed 2 months ago
Share
SHARE

China-backed cyber espionage group UNC5221 has been targeting Ivanti’s VPN products, exploiting vulnerabilities to compromise customer networks. These ongoing attacks highlight the persistent threats faced by organizations relying on Ivanti solutions. As the cybersecurity landscape evolves, vigilance against such intrusions remains critical.

Contents
How Are Ivanti Products Being Compromised?Which Customers Are Affected?What Steps Are Being Taken to Mitigate the Threat?

Ivanti has faced multiple security breaches in the past, but the current exploitation of CVE-2025-22457 marks a significant escalation in the tactics used by threat actors. Previously, vulnerabilities were exploited in isolated incidents, whereas this ongoing campaign demonstrates a more systematic approach by UNC5221.

How Are Ivanti Products Being Compromised?

The exploitation centers on a stack-based overflow vulnerability (CVE-2025-22457) in Ivanti Connect Secure, allowing remote code execution by attackers.

Which Customers Are Affected?

Only a limited number of customers using Ivanti Connect Secure versions 22.7R2.5 or earlier and unsupported Pulse Connect Secure 9.1x appliances have been targeted so far.

What Steps Are Being Taken to Mitigate the Threat?

Ivanti has released patches and urged customers to update to Connect Secure 22.7R2.6, while developing fixes for other affected products expected later this month.

“This latest activity from UNC5221 underscores the ongoing targeting of edge devices globally by China-nexus espionage groups,”

Mandiant Consulting CTO Charles Carmakal stated. Additionally, an Ivanti spokesperson emphasized,

“Network security devices and edge devices are a focus of sophisticated and highly persistent threat actors.”

These statements reflect the heightened alertness and proactive measures being taken to address the vulnerabilities.

Comprehensive monitoring and timely patching are essential for organizations using Ivanti products. Implementing the latest updates and adhering to security advisories can significantly reduce the risk of exploitation. As cyber threats become more advanced, continuous collaboration between vendors and security experts is crucial to safeguard sensitive data and maintain network integrity.

You can follow us on Youtube, Telegram, Facebook, Linkedin, Twitter ( X ), Mastodon and Bluesky

You Might Also Like

Massachusetts Student Admits Guilt in Massive School Data Breach

Telecom Breach Leaves Executives Stunned as Government Faces Backlash

House Bill Proposes Overhaul for Federal Cyber Workforce Training

CIOs Tackle Quantum Threat in Encryption Race

FTC Seeks New Tools to Combat Deepfake Pornography

Share This Article
Facebook Twitter Copy Link Print
Samantha Reed
By Samantha Reed
Samantha Reed is a 40-year-old, New York-based technology and popular science editor with a degree in journalism. After beginning her career at various media outlets, her passion and area of expertise led her to a significant position at Newslinker. Specializing in tracking the latest developments in the world of technology and science, Samantha excels at presenting complex subjects in a clear and understandable manner to her readers. Through her work at Newslinker, she enlightens a knowledge-thirsty audience, highlighting the role of technology and science in our lives.
Previous Article Compulsion Games to Launch ‘South of Midnight’ in April 2025
Next Article Intel Appoints Lip-Bu Tan as CEO to Steer Through Industry Challenges

Stay Connected

6.2kLike
8kFollow
2.3kSubscribe
1.7kFollow

Latest News

Sam Altman Backs Retro Biosciences for Life-Extending Therapies
Technology
TRON1 Robot Expands Capabilities with New Features
Robotics
Simbe Robots Boost Retail Efficiency with AI Innovations
Robotics
Tesla Prepares Massive Robotaxi Rollout in Austin
Electric Vehicle
Orbit 5.0 Powers Up Boston Dynamics’ Spot Robots
Robotics
NEWSLINKER – your premier source for the latest updates in ai, robotics, electric vehicle, gaming, and technology. We are dedicated to bringing you the most accurate, timely, and engaging content from across these dynamic industries. Join us on our journey of discovery and stay informed in this ever-evolving digital age.

ARTIFICAL INTELLIGENCE

  • Can Artificial Intelligence Achieve Consciousness?
  • What is Artificial Intelligence (AI)?
  • How does Artificial Intelligence Work?
  • Will AI Take Over the World?
  • What Is OpenAI?
  • What is Artifical General Intelligence?

ELECTRIC VEHICLE

  • What is Electric Vehicle in Simple Words?
  • How do Electric Cars Work?
  • What is the Advantage and Disadvantage of Electric Cars?
  • Is Electric Car the Future?

RESEARCH

  • Robotics Market Research & Report
  • Everything you need to know about IoT
  • What Is Wearable Technology?
  • What is FANUC Robotics?
  • What is Anthropic AI?
Technology NewsTechnology News
Follow US
About Us   -  Cookie Policy   -   Contact

© 2025 NEWSLINKER. Powered by LK SOFTWARE
Welcome Back!

Sign in to your account

Register Lost your password?