Attention VPN users: security flaws are being exploited to spread dangerous malware

Users of Ivanti’s Connect Secure (ICS) Virtual Private Network (VPN) devices should beware: the fixes contain two high-severity vulnerabilities linked together to deliver the Silver malware.

First things first: the two vulnerabilities exploited here are tracked as CVE-2023-46805 and CVE-2024-21887. The former has a severity score of 8.2, the latter a 9.1. Volexity researchers first spotted these two being exploited in early December 2023 and alleged that Chinese state-sponsored threat actors were exploiting them as zero-days.