Welcome to our

Cyber Security News Aggregator

.

Cyber Tzar

provide a

cyber security risk management

platform; including automated penetration tests and risk assesments culminating in a "cyber risk score" out of 1,000, just like a credit score.

More Scans for Ivanti Connect "Secure" VPN. Exploits Public, (Thu, Jan 18th)

published on 2024-01-18 13:54:31 UTC by
Content:
Exploits around the Ivanti Connect "Secure" VPN appliance, taking advantage of CVE-2023-46805, continue evolving. Late on Tuesday, more details became public, particularly the blog post by Rapid7 explaining the underlying vulnerability in depth [1]. Rapid7 also does a good job walking you through how Ivanti obfuscates the LUKS key in its appliance. This will make it easier for security researchers to inspect the code, hopefully pointing out additional vulnerabilities to Ivanti in the future. In other words, get ready for more Ivanti exploits, and hopefully patches, this year.
Article: More Scans for Ivanti Connect "Secure" VPN. Exploits Public, (Thu, Jan 18th) - published 10 months ago.

https://isc.sans.edu/diary/rss/30568   
Published: 2024 01 18 13:54:31
Received: 2024 01 18 14:15:09
Feed: SANS Internet Storm Center, InfoCON: green
Source: SANS Internet Storm Center, InfoCON: green
Category: Alerts
Topic: Vulnerabilities
Views: 0

Custom HTML Block

Click to Open Code Editor