CISA Says To Disconnect Ivanti VPN Appliances To Avoid Pwnage

You might remember that Ivanti who have had a number of zero day vulnerabilities pop up over the last few months disclosed two of them with their Connect Secure VPN appliances. And at the same time, they disclosed that the vulnerabilities were being actively exploited. That got the attention of the CISA who in mid January issued an emergency directive to mitigate this. But I guess that didn’t go far enough for the CISA who is now ordering this action among others via this supplemental direction:

As soon as possible and no later than 11:59PM on Friday February 2, 2024, disconnect all instances of Ivanti Connect Secure and Ivanti Policy Secure solution products from agency networks.

I am guessing that the CISA took this action because of a  third actively exploited zero-day in these VPN appliances that Ivanti disclosed. It’s really looking like that these VPN appliances cannot be trusted so pulling them from service is likely the best course of action. Honestly, Ivanti has a lot of explaining to do because given their very recent track record of disclosing zero day after zero day, they as a company who can produce secure products are looking a bit suspect here.

Oh I should mention that if you’re a company who uses Ivanti products, you might want to rethink that given the actions of the CISA. And perhaps you should consider following their lead to avoid getting pwned.

One Response to “CISA Says To Disconnect Ivanti VPN Appliances To Avoid Pwnage”

  1. […] related to Ivanti products. Now it’s not know if it was the same Ivanti products that the CISA told government agencies to disconnect back in February. But this is absolutely not a good look because when the guys who are supposed to […]

Leave a Reply

Discover more from The IT Nerd

Subscribe now to keep reading and get access to the full archive.

Continue reading