VPN flaws allowed Chinese hackers to compromise dozens of Ivanti customers, says report

VPN flaws allowed Chinese hackers to compromise dozens of Ivanti customers, says report

In a significant cybersecurity breach, Ivanti, a prominent software developer, revealed that Chinese hackers infiltrated its subsidiary Pulse Secure's network, which provides VPN services to numerous corporations and governmental bodies globally. This alarming incident, reported by Bloomberg, was traced back to a hidden backdoor planted in the Pulse Secure VPN software, allowing the attackers access to a staggering 119 additional organizations that utilized the same technology. The cybersecurity firm Mandiant reportedly had prior knowledge of these breaches, having informed Ivanti that the vulnerabilities had been exploited to target both European and U.S. military contractors. This incident sheds light on the broader implications of company acquisitions and subsequent layoffs, which have been linked to a decline in the security standards of Ivanti's technologies, particularly after its acquisition by Clearlake Capital Group in 2017. Reports indicate that significant cuts, especially in 2022, resulted in the loss of key personnel who possessed valuable expertise regarding the company's security protocols. This situation mirrors challenges faced by competitors like Citrix, which also experienced major layoffs after a 2022 acquisition, leading to similar cybersecurity issues. Since the initial breach, Ivanti's VPN products have been implicated in at least two other major cybersecurity incidents. Most recently, in early 2024, the U.S. Cybersecurity and Infrastructure Security Agency (CISA) mandated that all federal agencies disconnected their Ivanti VPN devices within a 48-hour window due to ongoing exploitation of undisclosed vulnerabilities. Additionally, Ivanti had issued warnings to its clients about another serious flaw in its Connect Secure product that hackers were actively exploiting to breach corporate networks.

Sources : TechCrunch

Published On : Feb 23, 2026, 16:15

AI
Google Enhances AI Insights with More Website Links

In a significant shift, Google is reimagining the layout of its search results to incorporate more links to external web...

Ars Technica | May 08, 2026, 19:50
Google Enhances AI Insights with More Website Links
Computing
Kevin O'Leary Advocates for AI Data Center, Promises Community Engagement

Kevin O'Leary, the prominent venture capitalist and 'Shark Tank' star, is stepping up to defend his controversial AI dat...

Business Insider | May 08, 2026, 19:10
Kevin O'Leary Advocates for AI Data Center, Promises Community Engagement
Automotive
Porsche Restructures: Closure of Subsidiaries Marks a Shift in Strategy

Porsche is set to close three of its subsidiaries as it grapples with declining sales and profits, a move announced by t...

TechCrunch | May 08, 2026, 18:45
Porsche Restructures: Closure of Subsidiaries Marks a Shift in Strategy
Startups
Rocket Lab's Stock Skyrockets 30% Following Impressive Revenue and Major Launch Contract

Rocket Lab's shares soared by 30%, reaching new heights after the aerospace firm exceeded revenue expectations for the f...

CNBC | May 08, 2026, 18:45
Rocket Lab's Stock Skyrockets 30% Following Impressive Revenue and Major Launch Contract
Streaming
Amazon Introduces 'Clips': A New Short-Form Video Experience on Prime Video

Amazon has officially launched a new feature called 'Clips' within the Prime Video app, aimed at enhancing viewer engage...

TechCrunch | May 08, 2026, 21:05
Amazon Introduces 'Clips': A New Short-Form Video Experience on Prime Video
View All News