← Back to Feed
Malicious Listener for Ivanti Endpoint Mobile Management Systems
CVE-2025-4427CVE-2025-4428
September 17, 2025 · CISA Advisories · Severity: HIGH
Malware Analysis at a Glance Executive Summary The Cybersecurity and Infrastructure Security Agency (CISA) obtained two sets of malware from an organization compromised by cyber threat actors exploiting CVE-2025-4427 and CVE-2025-4428 in Ivanti Endpoint Manager Mobile (Ivanti EPMM).
Key Takeaways
- Malware Analysis at a Glance Executive Summary The Cybersecurity and Infrastructure Security Agency (CISA) obtained.
- Each set contains loaders for malicious listeners that enable cyber threat actors to run arbitrary code on the.