MetaRAT Malware Deployed via Ivanti Connect Secure Vulnerabilities
First seen 9 Dec 2025, 12:54 UTC
•

•45
Export
Article Content
Browse articles
A China-based advanced persistent threat (APT) group has exploited vulnerabilities in Ivanti Connect Secure to deploy MetaRAT malware. Japan's cybersecurity firm LAC has confirmed the targeted nature of this attack, affecting organizations using the Ivanti platform.
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
More articles in this cluster
Continue Reading
Critical Remote Code Execution Vulnerability Exploited by China-Nexus Actor
Operation Escaneo Targets Latin American Critical Infrastructure
Urgent Mitigation Needed for Multiple Cyber Vulnerabilities in UK Organizations
Ransomware Fuels Surge in Global Cyberattacks
CISA Issues Update on RESURGE Malware Targeting Ivanti Devices
Chinese Hackers Exploit Vulnerability in Ivanti VPN Software