This page contains a web-friendly version of the Cybersecurity and Infrastructure Security Agency’s Supplemental Direction V1: Emergency Directive 24-01:
CISA ordered U.S. agencies to disconnect Ivanti Connect Secure VPNs by a Saturday deadline, as attackers exploit multiple vulnerabilities in the devices.
Cyber authorities in the U.S. and Australia have issued new warnings to IT administrators to take more action to protect Ivanti Connect Secure and Policy Secure Gateways. At the same time, Ivanti revealed that two new vulnerabilities for the devices have been discovered, on top of a pair revealed earlier this month. The latest vulnerabilities