• Home
  • Privacy Policy
  • Terms and Conditions
  • DMCA
  • Disclaimer
  • Contact us
Friday, June 13, 2025
No Result
View All Result
NEWSLETTER defal
Lebanon Hub
NEWSLETTER
  • Home – Lebanon hub
    • About us
    • Radio & Live Hosting
      • Home
      • Podcast
      • About us
      • Contact us
  • Blog
    • Submit Blog
  • News
    • International
      • Lebanon
      • Australia
      • Sports
      • Tech
      • Cyber Security
      • Music
      • Celebrity
      • TV
      • Movies
    • Gaming
      • Reviews
      • XBOX
      • PlayStation
      • PC
      • Mobile
      • New Released
      • Popular
    • Cryptocurrency
      • Blockchain
      • Bitcoin
      • Altcoin
      • Exchange
      • Startups
      • Ethereum
      • Litecoin
  • Business
    • Business Dashboard
    • Add New Business
  • Events
    • Event Dashboard
  • Apply Job
    • All Jobs
    • All Resumes
  • Contact us
  • Sign in
  • Sign up
  • Home – Lebanon hub
    • About us
    • Radio & Live Hosting
      • Home
      • Podcast
      • About us
      • Contact us
  • Blog
    • Submit Blog
  • News
    • International
      • Lebanon
      • Australia
      • Sports
      • Tech
      • Cyber Security
      • Music
      • Celebrity
      • TV
      • Movies
    • Gaming
      • Reviews
      • XBOX
      • PlayStation
      • PC
      • Mobile
      • New Released
      • Popular
    • Cryptocurrency
      • Blockchain
      • Bitcoin
      • Altcoin
      • Exchange
      • Startups
      • Ethereum
      • Litecoin
  • Business
    • Business Dashboard
    • Add New Business
  • Events
    • Event Dashboard
  • Apply Job
    • All Jobs
    • All Resumes
  • Contact us
  • Sign in
  • Sign up
No Result
View All Result
Lebanon Hub
No Result
View All Result

Chinese hackers exploit Ivanti VPN zero days for RCE attacks

January 11, 2024
in Cyber Security
0
Home Cyber Security
0
VIEWS
Share on FacebookShare on Twitter



Two critically extreme zero-day vulnerabilities in units operating Ivanti VPN companies are being actively exploited by Chinese language nation-state actors for unauthenticated distant code execution, in line with Volexity analysis.

Tracked as CVE-2023-46805 and CVE-2024-21887, the vulnerabilities, with CVSS scores 8.2 and 9.1 respectively, have been found in Ivanti Join Safe (previously generally known as Pulse Join Safe), a distant entry VPN resolution for distant and cell customers needing entry to company sources.

“Upon studying of the vulnerability, we instantly mobilized sources and mitigation is obtainable now,” Ivanti mentioned in a safety advisory. “We’re offering mitigation now whereas the patch is in improvement to prioritize the very best curiosity of our prospects.”

Vulnerabilities Chained collectively for unauthenticated RCE

The zero-day was recognized by the researchers through the second week of December as they detected suspicious lateral motion on the community of considered one of Volexity’s Community Safety Monitoring service prospects. Ultimately, the malicious actions have been tracked again to the group’s Web-facing Ivanti Join Safe (ICS) VPN equipment.

The researchers found that the vulnerabilities have been chained collectively to impact full unauthenticated distant code execution. Individually, CVE-2023-46805 is an authentication-bypass vulnerability, whereas CVE-2024-21887 is a command injection vulnerability.

“When mixed, these two vulnerabilities make it trivial for attackers to run instructions on the system,” Volexity mentioned in a weblog submit. “On this specific incident, the attacker leveraged these exploits to steal configuration knowledge, modify present recordsdata, obtain distant recordsdata, and reverse tunnel from the ICS VPN equipment.”



Source link

Tags: attacksCHINESEDaysexploitHackersIvantiRCEVPN
Next Post
The OnePlus 12’s periscope camera is coming to a budget phone

The OnePlus 12's periscope camera is coming to a budget phone

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Beirut, LB
14°
Cloudy / Wind
05:4017:50 EET
Feels like: 13°C
Wind: 34km/h SW
Humidity: 65%
Pressure: 1012.19mbar
UV index: 0
FriSatSun
14°C / 9°C
16°C / 11°C
18°C / 12°C
powered by Weather Atlas

Recent News

PS5 Finally Has More Monthly Players Than PS4

PS5 Finally Has More Monthly Players Than PS4

June 13, 2025
Batman Begins 20 Years Later: Ranking Nolan Trilogy Characters

Batman Begins 20 Years Later: Ranking Nolan Trilogy Characters

June 13, 2025
Apple Games and the future of iOS gaming

Apple Games and the future of iOS gaming

June 13, 2025
Life Uncut’s Brittany Hockley and Ben Siegrist’s 00 wedding cake disaster

Life Uncut’s Brittany Hockley and Ben Siegrist’s $1000 wedding cake disaster

June 13, 2025
AFL round 14: Hawks vs Crows live updates — blog, scores and stats from Launceston

AFL round 14: Hawks vs Crows live updates — blog, scores and stats from Launceston

June 13, 2025
Celtic given permission to speak to 16-goal star who is available for £2m

Celtic given permission to speak to 16-goal star who is available for £2m

June 13, 2025
Trump administration throws wrench into  billion broadband rollout

Trump administration throws wrench into $42 billion broadband rollout

June 13, 2025
Virtuelle Maschine als Tarnkappe – Sophos News

Virtuelle Maschine als Tarnkappe – Sophos News

June 13, 2025
Lebanon Hub

Get the Latest Lebanon News and world News on LebanonHub.com. Local News, Sports, Technology, Music, Celebrity, Gaming News and Cryptocurrency Updates.

Category

  • Altcoin
  • Australia
  • Bitcoin
  • Blockchain
  • Celebrity
  • Cyber Security
  • Ethereum
  • Exchange
  • Litecoin
  • Local News
  • Mobile
  • Movies
  • Music
  • New Released
  • PC
  • PlayStation
  • Popular
  • Reviews
  • Sports
  • Startups
  • Technology
  • TV
  • XBOX

Recent News

PS5 Finally Has More Monthly Players Than PS4

PS5 Finally Has More Monthly Players Than PS4

June 13, 2025
Batman Begins 20 Years Later: Ranking Nolan Trilogy Characters

Batman Begins 20 Years Later: Ranking Nolan Trilogy Characters

June 13, 2025
  • Home
  • DMCA
  • Disclaimer
  • Privacy Policy
  • Cookie Privacy Policy
  • Terms and Conditions
  • Contact us

Copyright © 2022 - Lebanon Hub.

No Result
View All Result
  • Home – Lebanon hub
    • About us
    • Radio & Live Hosting
      • Home
      • Podcast
      • About us
      • Contact us
  • Blog
    • Submit Blog
  • News
    • International
      • Lebanon
      • Australia
      • Sports
      • Tech
      • Cyber Security
      • Music
      • Celebrity
      • TV
      • Movies
    • Gaming
      • Reviews
      • XBOX
      • PlayStation
      • PC
      • Mobile
      • New Released
      • Popular
    • Cryptocurrency
      • Blockchain
      • Bitcoin
      • Altcoin
      • Exchange
      • Startups
      • Ethereum
      • Litecoin
  • Business
    • Business Dashboard
    • Add New Business
  • Events
    • Event Dashboard
  • Apply Job
    • All Jobs
    • All Resumes
  • Contact us
  • Sign in
  • Sign up

Copyright © 2022 - Lebanon Hub.