Close Menu
TechBrunchTechBrunch
  • Home
  • AI
  • Apps
  • Crypto
  • Security
  • Startups
  • TechCrunch
  • Venture

Subscribe to Updates

Subscribe to our newsletter and never miss our latest news

Subscribe my Newsletter for New Posts & tips Let's stay updated!

What's Hot

Google I/O 2025: What to expect including Gemini and Android 16 updates?

May 16, 2025

How Silicon Valley's influence in Washington benefits high-tech elites

May 16, 2025

American man spiked the price of Bitcoin hacked SEC X account and sentenced to prison

May 16, 2025
Facebook X (Twitter) Instagram
TechBrunchTechBrunch
  • Home
  • AI

    OpenAI seeks to extend human lifespans with the help of longevity startups

    January 17, 2025

    Farewell to the $200 million woolly mammoth and TikTok

    January 17, 2025

    Nord Security founder launches Nexos.ai to help enterprises move AI projects from pilot to production

    January 17, 2025

    Data proves it remains difficult for startups to raise capital, even though VCs invested $75 billion in the fourth quarter

    January 16, 2025

    Apple suspends AI notification summaries for news after generating false alerts

    January 16, 2025
  • Apps

    Google I/O 2025: What to expect including Gemini and Android 16 updates?

    May 16, 2025

    After adding your own billing option to iOS, Apple asks Patreon to go to an external browser

    May 16, 2025

    The epic game says Apple is blocking Fortnite from the US and EU app stores

    May 16, 2025

    Viral outrage over Apple's EU payment warning misses important facts

    May 15, 2025

    Tiktok unveils a new meditation feature that will help you get off the app and sleep

    May 15, 2025
  • Crypto

    Robinhood expands its footprint in Canada by getting Wonderfi

    May 13, 2025

    Stripe unveils AI Foundation model for payments, revealing a “deeper partnership” with Nvidia

    May 7, 2025

    Movie Pass explores the daily fantasy platform of film buffs

    May 1, 2025

    Speaking on TechCrunch 2025: Application is open

    April 24, 2025

    Revolut, a $45 billion Neobank, recorded a profit of $1 billion in 2024

    April 24, 2025
  • Security

    American man spiked the price of Bitcoin hacked SEC X account and sentenced to prison

    May 16, 2025

    Coinbase says that customer's personal information was stolen in a data breach

    May 15, 2025

    White House Scrap plans to block data brokers from selling sensitive American data

    May 14, 2025

    Xai's promised safety report is MIA

    May 13, 2025

    Seven things we learned from WhatsApp vs. NSO Group Spyware Litigation

    May 13, 2025
  • Startups

    7 days left: Founders and VCs save over $300 on all stage passes

    March 24, 2025

    AI chip startup Furiosaai reportedly rejecting $800 million acquisition offer from Meta

    March 24, 2025

    20 Hottest Open Source Startups of 2024

    March 22, 2025

    Andrill may build a weapons factory in the UK

    March 21, 2025

    Startup Weekly: Wiz bets paid off at M&A Rich Week

    March 21, 2025
  • TechCrunch

    OpenSea takes a long-term view with a focus on UX despite NFT sales remaining low

    February 8, 2024

    AI will save software companies' growth dreams

    February 8, 2024

    B2B and B2C are not about who buys, but how you sell

    February 5, 2024

    It's time for venture capital to break away from fast fashion

    February 3, 2024

    a16z's Chris Dixon believes it's time to focus on blockchain use cases rather than speculation

    February 2, 2024
  • Venture

    How Silicon Valley's influence in Washington benefits high-tech elites

    May 16, 2025

    Red Point raises $650 million three years from the last big early stage fund

    May 15, 2025

    Lip Ring vs Deal Unpacking: Corporate Spy and $16.8 billion Plot Twist

    May 14, 2025

    A $2.5 billion treasured chime file for IPO reveals a $33 million deal with the Dallas Mavericks

    May 13, 2025

    New York-focused VC Workbench has raised a new $160 million

    May 13, 2025
TechBrunchTechBrunch

NSA says hackers are tracking Ivanti cyber attack while attacking US defense sector

TechBrunchBy TechBrunchMarch 1, 20243 Mins Read
Facebook Twitter Pinterest Telegram LinkedIn Tumblr WhatsApp Email
Share
Facebook Twitter LinkedIn Pinterest Telegram Email


The U.S. National Security Agency has confirmed that hackers exploiting a flaw in Ivanti's widely used enterprise VPN appliance targeted organizations across the U.S. defense sector.

NSA spokesman Edward Bennett said in an emailed statement to TechCrunch on Friday that the U.S. intelligence community, along with interagency intelligence agencies, is “tracking the broader impact of the recent misuse of Ivanti products. I am aware of it,” he admitted. [sic] Department of Defense of the United States. ”

” [NSA’s] “The Cybersecurity Collaboration Center continues to work with our partners to detect and mitigate this activity,” the spokesperson added.

Confirmation that the NSA is tracking these cyberattacks comes as multiple vulnerabilities affect Ivanti Connect Secure, a popular remote access VPN software used by thousands of businesses and large organizations around the world. It comes just days after Mandiant reported that hackers suspected of Chinese espionage had made “massive attempts” to exploit .

Earlier this week, Mandiant announced that Chinese-backed hackers, which the company tracks as a threat group it calls UNC5325, were targeting organizations across a variety of industries. This includes the U.S. Defense Industrial Infrastructure Sector, a global network of thousands of private sector organizations that provide equipment and services to the U.S. military, Mandiant said, citing previous research by security firm Volexity. said.

In his analysis, Mandiant said UNC5325 demonstrates “significant knowledge” about the Ivanti Connect Secure appliance and uses resident techniques (legitimate tools already present on the target system) to better evade detection. and the use of features). He said. The Chinese-backed hackers also deployed new malware that “remains embedded in Ivanti devices even after factory resets, system upgrades, and patching.”

This is reflected in an advisory released Thursday by US cybersecurity agency CISA, which says hackers exploiting vulnerable Ivanti VPN appliances could maintain root-level persistence even after a factory reset. I'm warning you that it's sexual. The Federal Cyber ​​Security Agency said its own independent testing showed that a successful attacker could fool Ivanti's integrity checker tool, resulting in a “failure to detect a breach.” Ta.

In response to CISA's findings, Ivanti Field Chief Information Security Officer Mike Riemer downplays CISA's findings and says Ivanti does not believe CISA's tests will work against real-world customer environments TechCrunch told. Riemer added that Ivanti “recommends the security that Ivanti recommends.”

It remains unclear exactly how many Ivanti customers are affected by the widespread exploitation of the Connect Secure vulnerability that began in January.

Akamai said in an analysis released last week that hackers attempt about 250,000 exploits every day, targeting more than 1,000 customers.



Source link

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email

Related Posts

American man spiked the price of Bitcoin hacked SEC X account and sentenced to prison

May 16, 2025

Coinbase says that customer's personal information was stolen in a data breach

May 15, 2025

White House Scrap plans to block data brokers from selling sensitive American data

May 14, 2025

Xai's promised safety report is MIA

May 13, 2025

Seven things we learned from WhatsApp vs. NSO Group Spyware Litigation

May 13, 2025

Google announces new security features for Android to protect against fraud and theft

May 13, 2025

Leave A Reply Cancel Reply

Top Reviews
Editors Picks

7 days left: Founders and VCs save over $300 on all stage passes

March 24, 2025

AI chip startup Furiosaai reportedly rejecting $800 million acquisition offer from Meta

March 24, 2025

20 Hottest Open Source Startups of 2024

March 22, 2025

Andrill may build a weapons factory in the UK

March 21, 2025
About Us
About Us

Welcome to Tech Brunch, your go-to destination for cutting-edge insights, news, and analysis in the fields of Artificial Intelligence (AI), Cryptocurrency, Technology, and Startups. At Tech Brunch, we are passionate about exploring the latest trends, innovations, and developments shaping the future of these dynamic industries.

Our Picks

Google I/O 2025: What to expect including Gemini and Android 16 updates?

May 16, 2025

How Silicon Valley's influence in Washington benefits high-tech elites

May 16, 2025

American man spiked the price of Bitcoin hacked SEC X account and sentenced to prison

May 16, 2025

Subscribe to Updates

Subscribe to our newsletter and never miss our latest news

Subscribe my Newsletter for New Posts & tips Let's stay updated!

© 2025 TechBrunch. Designed by TechBrunch.
  • Home
  • About Tech Brunch
  • Advertise with Tech Brunch
  • Contact us
  • DMCA Notice
  • Privacy Policy
  • Terms of Use

Type above and press Enter to search. Press Esc to cancel.