Tag: Cloud Service Appliance

Nation-State Attackers Exploiting Ivanti CSA Flaws for Network Infiltration
News

Nation-State Attackers Exploiting Ivanti CSA Flaws for Network Infiltration

A zero-day exploit in the Ivanti Cloud Service Appliance (CSA) has been used by a suspected nation-state adversary to carry out a number of malevolent operations. Fortinet FortiGuard Labs' results support this, stating that the vulnerabilities were exploited to obtain unauthenticated access to the CSA, list all of the users that were set up in the appliance, and try to obtain the login credentials of those users. According to security experts Faisal Abdul Malik Qureshi, John Simmons, Jared Betts, Luca Pugliese, Trent Healy, Ken Evans, and Robert Reyes, the sophisticated adversaries were seen taking use of and chaining zero-day vulnerabilities to create beachhead access in the victim's network read more about Nation-State Attackers Exploiting Ivanti CSA Flaws for Network Infiltration...
Zero-Day Alert: Three Critical Ivanti CSA Vulnerabilities Actively Exploited
News

Zero-Day Alert: Three Critical Ivanti CSA Vulnerabilities Actively Exploited

Three new security flaws affecting Ivanti's Cloud Service Appliance (CSA) have been actively exploited in the wild, the company has said. The zero-day defects are being weaponized in conjunction with another flaw in CSA that the business addressed last month, the Utah-based software services provider said. If these vulnerabilities are successfully exploited, an authorized attacker with administrator credentials may be able to execute arbitrary SQL statements, circumvent security measures, and get remote code execution. A small number of users running CSA 4.6 patch 518 and earlier, according to the firm, have been known to have been taken advantage of when CVE-2024-9379, CVE-2024-9380, or CVE-2024-9381 are chained with CVE-2024-8963 read more about Three Critical Ivanti CSA Vulner...