Feb. 1, 2024, 5:10 p.m. | MalBot

Malware Analysis, News and Indicators - Latest topics malware.news

On January 31, 2024, Ivanti published an article disclosing two high severity vulnerabilities:  CVE-2024-21893: A server-side request forgery flaw present in the SAML component of Ivanti Connect Secure, Ivanti Policy Secure, and Ivanti Neurons. This vulnerability allows an unauthenticated threat actor to access restricted resources. Ivanti reports that a limited number of customers have been … CVE-2024-21893: New Ivanti Zero-Day Vulnerability Actively Exploited


Article Link: CVE-2024-21893 | Arctic Wolf


1 post - 1 participant


Read full topic

access actively exploited actor article connect customers cve cve-2024-21893 exploited flaw forgery high ivanti ivanti connect secure ivanti neurons ivanti policy secure january policy reports request resources restricted saml server server-side request forgery severity threat threat actor unauthenticated vulnerabilities vulnerability zero-day zero-day vulnerability

Social Engineer For Reverse Engineering Exploit Study

@ Independent study | Remote

DevSecOps Engineer

@ LinQuest | Beavercreek, Ohio, United States

Senior Developer, Vulnerability Collections (Contractor)

@ SecurityScorecard | Remote (Turkey or Latin America)

Cyber Security Intern 03416 NWSOL

@ North Wind Group | RICHLAND, WA

Senior Cybersecurity Process Engineer

@ Peraton | Fort Meade, MD, United States

Sr. Manager, Cybersecurity and Info Security

@ AESC | Smyrna, TN 37167, Smyrna, TN, US | Santa Clara, CA 95054, Santa Clara, CA, US | Florence, SC 29501, Florence, SC, US | Bowling Green, KY 42101, Bowling Green, KY, US