← Back to Feed

Malicious Listener for Ivanti Endpoint Mobile Management Systems

CVE-2025-4427CVE-2025-4428

September 17, 2025 · CISA Advisories · Severity: HIGH

Malware Analysis at a Glance Executive Summary The Cybersecurity and Infrastructure Security Agency (CISA) obtained two sets of malware from an organization compromised by cyber threat actors exploiting CVE-2025-4427 and CVE-2025-4428 in Ivanti Endpoint Manager Mobile (Ivanti EPMM).

Key Takeaways

  • Malware Analysis at a Glance Executive Summary The Cybersecurity and Infrastructure Security Agency (CISA) obtained.
  • Each set contains loaders for malicious listeners that enable cyber threat actors to run arbitrary code on the.
☕ Buy a Coffee