Related Threat Clusters
-
Urgent CISA Directive: Patch Critical Ivanti EPMM Vulnerability CVE-2026-1340 by April 11
The Cybersecurity and Infrastructure Security Agency (CISA) has mandated that U.S. federal agencies patch a critical vulnerability in Ivanti Endpoint Manager Mobile (EPMM), tracked as CVE-2026-1340, by April 11, 2026.…
23 articles · Updated April 8, 2026 -
Belgian State Security and Organizations Targeted by Cyberattacks
Between May 2025 and Spring 2026, the Belgian State Security experienced a data breach exposing employee information, attributed to vulnerabilities in Ivanti Endpoint Manager Mobile (EPMM). Hackers exploited flaws…
5 articles · Updated June 23, 2026 -
Ivanti EPMM Zero-Day Vulnerability Exploited in Active Attacks
Ivanti has disclosed a zero-day vulnerability (CVE-2026-6973) in its Endpoint Manager Mobile (EPMM) product, which has been actively exploited by attackers. This flaw allows authenticated users with administrative…
24 articles · Updated May 7, 2026 -
Critical Ivanti EPMM Vulnerabilities Under Active Exploitation
Two critical vulnerabilities in Ivanti's Endpoint Manager Mobile (EPMM), CVE-2026-1281 and CVE-2026-1340, have been actively exploited in the wild, allowing unauthenticated remote code execution (RCE) with a CVSS score…
64 articles · Updated January 29, 2026 -
Critical Vulnerabilities in Gogs and Jinjava Require Immediate Patching
Multiple critical vulnerabilities affecting Gogs and Jinjava have been disclosed, with severe impacts including remote code execution (RCE) and unauthorized file access. Gogs vulnerabilities include CVE-2025-64111…
2 articles · Updated June 25, 2026 -
Dutch Data Protection Authority Breached in Ivanti Zero-Day Exploitation
The Dutch Data Protection Authority (AP) confirmed it was compromised during a wave of attacks exploiting Ivanti vulnerabilities. The attack, which occurred on January 29, involved the Ivanti Endpoint Manager Mobile…
4 articles · Updated February 9, 2026 -
Urgent Warning Issued for Ivanti Mobile Security Flaw Exploitation
The National CERT has issued an urgent warning regarding active attacks exploiting a critical security flaw in Ivanti mobile systems, identified as CVE-2026-1281. This vulnerability allows unauthenticated remote code…
2 articles · Updated February 9, 2026 -
Microsoft Addresses Six Actively Exploited Zero-Day Vulnerabilities
On February 10, 2026, Microsoft released a security update addressing 59 vulnerabilities, including six zero-day flaws that were actively exploited prior to the patch. The vulnerabilities affect various Microsoft…
70 articles · Updated February 10, 2026 -
Russia Mandates Custom Crypto for 5G Network Amid Security Concerns
The Russian government is advancing legislation to require mobile operators to implement a domestically-developed encryption algorithm, NEA-7, for the country's 5G network. If passed, all new phones sold in Russia must…
2 articles · Updated March 27, 2026 -
European Commission Confirms Cyber Incident Affecting Mobile Device Management
The European Commission has detected and contained a cyber incident affecting its mobile device management infrastructure. The breach, identified on January 30, resulted in unauthorized access to a limited subset of…
18 articles · Updated February 9, 2026
Recent Intelligence Reports
- Multiple Critical Vulnerability Disclosures Across Gogs, Jinjava, and Kubernetes Local Path ... — Mallory.Ai · June 25, 2026
- Warning Remote Code Execution Ivanti Epmm Endpoint Manager Mobile Patch Immediately — ccb.belgium.be · June 24, 2026
- CISA gives feds four days to patch Ivanti flaw exploited as zero — Bleepingcomputer · May 8, 2026
- Ivanti customers confront yet another actively exploited zero — Cyberscoop · May 7, 2026
- Ivanti warns of new EPMM flaw exploited in zero — Bleepingcomputer · May 7, 2026
- Ivanti Coughs Up Exploited EPMM Zero- — www.theregister.com · May 5, 2026
- CISA adds second critical flaw in Ivanti EPMM to exploited vulnerabilities catalog — Cybersecuritydive · April 9, 2026
- CISA orders feds to patch exploited Ivanti EPMM flaw by Sunday — Bleepingcomputer · April 8, 2026