Two critical vulnerabilities in Ivanti's Endpoint Manager Mobile (EPMM), CVE-2026-1281 and CVE-2026-1340, have been actively exploited in the wild, allowing unauthenticated remote code execution (RCE) with a CVSS score…
The US Cybersecurity and Infrastructure Security Agency (CISA) has issued a warning regarding active exploitation of vulnerabilities in Ivanti Endpoint Manager, SolarWinds Web Help Desk, and VMware Workspace ONE. The…
A significant data breach has impacted several Dutch agencies, including the Dutch Data Protection Authority and the Council for Justice. Unauthorized access to personal data of employees occurred due to a vulnerability…
Security researchers have identified a new class of vulnerabilities, termed 'SOAPwn', affecting the .NET Framework. These vulnerabilities can be exploited for remote code execution (RCE) across various enterprise…
Ivanti has issued security updates for a critical vulnerability (CVE-2025-10573) in its Endpoint Manager (EPM) product. This flaw could allow remote, unauthenticated attackers to execute arbitrary JavaScript code,…
Security researchers have identified a remote code execution (RCE) vulnerability in the .NET framework that impacts various enterprise applications. Piotr Bazydło from watchTowr presented these findings at Black Hat…
Vulnerabilities in Ivanti Endpoint Manager have been identified, enabling attackers to write arbitrary files to disk on targeted systems. This security flaw affects organizations using the software, potentially leading…
In 2025, cyber incidents surged to 8,903 across all sectors, a 55% increase from 2024's 5,744. The health sector recorded 585 incidents, reflecting a slower growth rate compared to the overall rise. This trend indicates…
Ivanti Endpoint Manager (EPM) has critical vulnerabilities that enable attackers to write files to hard drives and potentially gain system access. The flaws, including CVE-2025-9713 and CVE-2025-10918, could lead to…
Ivanti Endpoint Manager (EPM) has multiple high-severity vulnerabilities that allow attackers to write arbitrary files to disk, potentially leading to privilege escalation and malicious code execution. A security patch…