>We are aware of a very limited number of customers whose solution has been exploited at the time of disclosure. “We are aware” and “very limited” are likely (in our opinion, this is probably not fact, etc, etc) to be doing a significant amount of lifting. For avoidance of doubt, the following versions of Ivanti EPMM are patched: None ---- Ah, this company is a security joke as most software security companies are.
"We are aware" can mean "we are taking this very seriously and have seen very little so far" or it can mean "after covering our eyes and plugging our ears we are seeing and hearing very little of this problem".
Sleeper Shells: Attackers Are Planting Dormant Backdoors in Ivanti EPMM
11–20 of 54 posts
Re: Sleeper Shells: Attackers Are Planting Dormant Backdoors in Ivanti EPMM
#12Related: Someone Knows Bash Far Too Well, And We Love It (Ivanti EPMM Pre-Auth RCEs CVE-2026-1281 & CVE-2026-1340) https://labs.watchtowr.com/someone-knows-bash-far-too-well-a...
Re: Sleeper Shells: Attackers Are Planting Dormant Backdoors in Ivanti EPMM
#13Every single Ivanti product (including their SSL-VPN) should be considered a critical threat. The fact that this company is allowed to continue to sell their malware dressed-up as "security solutions" is a disaster. How they haven't been sued into bankruptcy is something I'll never understand.
If crowdstrike is any indicator, expect Ivanti stock to go up now. Seems to be the mo for security companies. Fuck up, get paid.
Re: Sleeper Shells: Attackers Are Planting Dormant Backdoors in Ivanti EPMM
#14Every single Ivanti product (including their SSL-VPN) should be considered a critical threat. The fact that this company is allowed to continue to sell their malware dressed-up as "security solutions" is a disaster. How they haven't been sued into bankruptcy is something I'll never understand.
Isn't most off-the-shelf software effectively always supplied without any kind of warranty? What grounds would the lawsuit have?
Re: Sleeper Shells: Attackers Are Planting Dormant Backdoors in Ivanti EPMM
#15Every single Ivanti product (including their SSL-VPN) should be considered a critical threat. The fact that this company is allowed to continue to sell their malware dressed-up as "security solutions" is a disaster. How they haven't been sued into bankruptcy is something I'll never understand.
Actual cybersecurity isn't something you can just buy off-the-shelf and requires skill and making every single person in the org to give a shit about it, which is already hard to achieve, and even more so when you've tried for years to pay them as little as you can get away with.
Re: Sleeper Shells: Attackers Are Planting Dormant Backdoors in Ivanti EPMM
#16Every single Ivanti product (including their SSL-VPN) should be considered a critical threat. The fact that this company is allowed to continue to sell their malware dressed-up as "security solutions" is a disaster. How they haven't been sued into bankruptcy is something I'll never understand.
The purpose of cybersecurity products and companies is not to sell security . It's to sell the illusion of security to (often incompetent) execs - which is perfectly fine because the market doesn't actually punish security breaches so an illusion is all that's needed. It is an insanely lucrative industry selling luxury-grade snake oil. Actual cybersecurity isn't something you can just buy off-the-shelf and requires s…
Re: Sleeper Shells: Attackers Are Planting Dormant Backdoors in Ivanti EPMM
#17Every single Ivanti product (including their SSL-VPN) should be considered a critical threat. The fact that this company is allowed to continue to sell their malware dressed-up as "security solutions" is a disaster. How they haven't been sued into bankruptcy is something I'll never understand.
> How they haven't been sued into bankruptcy is something I'll never understand. Isn't most off-the-shelf software effectively always supplied without any kind of warranty? What grounds would the lawsuit have?
Re: Sleeper Shells: Attackers Are Planting Dormant Backdoors in Ivanti EPMM
#18Re: Sleeper Shells: Attackers Are Planting Dormant Backdoors in Ivanti EPMM
#19>We are aware of a very limited number of customers whose solution has been exploited at the time of disclosure. “We are aware” and “very limited” are likely (in our opinion, this is probably not fact, etc, etc) to be doing a significant amount of lifting. For avoidance of doubt, the following versions of Ivanti EPMM are patched: None ---- Ah, this company is a security joke as most software security companies are.
"We are aware" can mean "we are taking this very seriously and have seen very little so far" or it can mean "after covering our eyes and plugging our ears we are seeing and hearing very little of this problem".
Re: Sleeper Shells: Attackers Are Planting Dormant Backdoors in Ivanti EPMM
#20>We are aware of a very limited number of customers whose solution has been exploited at the time of disclosure. “We are aware” and “very limited” are likely (in our opinion, this is probably not fact, etc, etc) to be doing a significant amount of lifting. For avoidance of doubt, the following versions of Ivanti EPMM are patched: None ---- Ah, this company is a security joke as most software security companies are.
1. https://labs.watchtowr.com/someone-knows-bash-far-too-well-a...