Researchers Warn of ‘Widespread’ Ivanti EPMM Exploitation
Exploitation of CVE-2026-1281 and CVE-2026-1340 is “widespread and mostly automated," according to Unit 42 researchers.
All topics
Exploitation of CVE-2026-1281 and CVE-2026-1340 is “widespread and mostly automated," according to Unit 42 researchers.
The hardcoded credential vulnerability (CVE-2026-22769) exists in Dell RecoverPoint for Virtual Machines and has been exploited since mid-2024.
STAR WARS isn’t just one of the ore successful and iconic movies of all time and the basis for a worldwide sci-fi empire, it’s also a true hacker story. Wade Baker and Rich Mogull, two Star Wars scholars, join Dennis Fisher to break down the Empire’s pathetic perimeter defenses, R2D2’s arc as a wily hacker, […]
This week was a cornucopia of zero days. We talk about the six (!) actively exploited vulnerabilities that Microsoft patched this week in its February update (2:46), then we discuss the one that Apple fixed in iOS 26.3, a vulnerability that has been used in what the company calls an “extremely sophisticated attack” against a few individuals (7:24). […]
That vulnerability also was patched in macOS, but the active exploitation that Apple disclosed was against iOS only.
The exploited vulnerabilities in question exist across various products, from Microsoft Word to Windows Shell.