Ivanti甫修補的滿分重大漏洞已出現實際攻擊
Posted in
業界新聞
新聞
Shadowserver基金會於11日提出警告,他們觀察到大規模利用CVE-2026-10520的嘗試行為,總共找到19臺存在弱點的Ivanti Sentry實體(instance),這些系統疑似都遭到入侵,其中有兩臺已被植入後門。該基金會表示,他們本次的偵測率偏低,很有可能是因為在掃描過程有許多Ivanti Sentry系統無法存取,因此若是用戶若是尚未修補,很有可能已經被入侵。
The Shadowserver Foundation (@Shadowserver) on X
We are observing a large amount of Ivanti Sentry CVE-2026-10520 exploitation attempts based on the public PoC today. We see 19 vulnerable instances in our own scans, with at least 2 backdoored (thanks to @NCA_KSA for the tip!). However, all remaining likely compromised too. https://t.co/uMgYSYLZTv
x.com
Comments (0)