Security News > 2023 > August > CISA issues new warning on actively exploited Ivanti MobileIron bugs

CISA issues new warning on actively exploited Ivanti MobileIron bugs
2023-08-01 17:13

The U.S. Cybersecurity and Infrastructure Security Agency warned today of state hackers exploiting two flaws in Ivanti's Endpoint Manager Mobile, formerly MobileIron Core.

"Mobile device management systems are attractive targets for threat actors because they provide elevated access to thousands of mobile devices, and APT actors have exploited a previous MobileIron vulnerability," CISA said on Tuesday.

Today's warning comes as a joint advisory issued in collaboration with Norway's National Cyber Security Centre, and it follows an order asking U.S. federal agencies to patch one of these two actively exploited flaws by August 15.

CISA warns govt agencies to patch Ivanti bug exploited in attacks.

Ivanti patches new zero-day exploited in Norwegian govt attacks.

Ivanti patches MobileIron zero-day bug exploited in attacks.


News URL

https://www.bleepingcomputer.com/news/security/cisa-issues-new-warning-on-actively-exploited-ivanti-mobileiron-bugs/

Related vendor

VENDOR LAST 12M #/PRODUCTS LOW MEDIUM HIGH CRITICAL TOTAL VULNS
Ivanti 23 9 59 74 51 193
Mobileiron 8 0 4 2 3 9