Skip to content
Widespread Exploitation of Ivanti EPMM Vulnerability CVE-2026-1281

Widespread Exploitation of Ivanti EPMM Vulnerability CVE-2026-1281

First seen 12 Feb 2026, 21:16 UTC • •

Article Content

Browse articles
ThreatCluster AI
ThreatCluster •March 12, 2026 at 16:10 UTC

Following the disclosure of CVE-2026-1281, a critical pre-authentication vulnerability in Ivanti EPMM, there has been a significant increase in exploitation attempts. Security researchers have reported targeting activities affecting various organizations, including government entities, with over 600 individual IP addresses involved in these attacks.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated 212d ago How this analysis works

Timeline

2026-02-10
Cybersecuritydive article reports widespread exploitation attempts
2026-02-11
Helpnetsecurity article warns of sleeper webshells following CVE disclosure
2026-02-11
CVE-2026-1281 disclosed

More articles in this cluster (2)