Thursday , September 17 2026
Ivanti

Ivanti Patches Multiple falws in Secure Access, Xtraction, vTM and Endpoint Manager

Ivanti has put out its May 2026 Patch Tuesday security updates. They found flaws in four products. They also said that AI tools are helping their engineers find mistakes that regular scanners miss. They warned that AI finding issues will probably lead to more flaws being reported in the future.

Ivanti Patches Multiple Vulnerabilities

Anthropic prepares “Claude Money” to analyze bank account and financial data

Anthropic is making a new Claude feature called “Money.” It's a separate tab in the mobile app. The new interface...
Read More
Anthropic prepares “Claude Money” to analyze bank account and financial data

GhostCode Phishing Kit Evades Microsoft 365 MFA to Hijack Accounts in 78 Seconds

GhostCode is a new phishing kit that changes a regular Microsoft 365 sign-in into an account theft. It doesn't need...
Read More
GhostCode Phishing Kit Evades Microsoft 365 MFA to Hijack Accounts in 78 Seconds

CISA Warns of Cisco Secure Email Gateway 0-Day Flaw Actively Exploited in Attacks

CISA has added a serious Cisco Secure Email Gateway flaw to its list of known exploits. They warn that attackers...
Read More
CISA Warns of Cisco Secure Email Gateway 0-Day Flaw Actively Exploited in Attacks

VPN flaw exposed 246,000 personnel records in japan

Japan’s Digital Agency found a data leak that may have exposed about 246,000 records with personal information of government workers....
Read More
VPN flaw exposed 246,000 personnel records in japan

Hackers deploy Casbaneiro Trojan that activates on bank websites

Casbaneiro is going after online banking users by sending fake messages that seem like urgent bills or legal papers. The...
Read More
Hackers deploy Casbaneiro Trojan that activates on bank websites

German police read Signal, Telegram, WhatsApp messages without breaking encryption

German law enforcement agencies are using features built into apps such as WhatsApp to monitor people’s messages without breaking their...
Read More
German police read Signal, Telegram, WhatsApp messages without breaking encryption

Urgent Patch! cPanel, GitLab Flaws Expose Users to RCE, File and Credential Theft

GitLab has released an important security update to fix two serious problems. These issues could allow unauthorized file access and...
Read More
Urgent Patch! cPanel, GitLab Flaws Expose Users to RCE, File and Credential Theft

Palo Alto PAN-OS Flaw Enables Root Arbitrary Code Execution

Palo Alto Networks has revealed a serious flaw in PAN-OS. It may let a remote attacker without a password run...
Read More
Palo Alto PAN-OS Flaw Enables Root Arbitrary Code Execution

Critical Check Point VPN flaws allow remote code execution attacks

Check Point Software has revealed and fixed two major VPN flaws, CVE-2026-85102 and CVE-2026-85103. Both have a top CVSS score...
Read More
Critical Check Point VPN flaws allow remote code execution attacks

Cisco confirms CVE-2026-20079 flaw in Secure FMC is exploited in attacks

Cisco has said that a serious security flaw CVE-2026-20079 in its Secure Firewall Management Center (FMC) software is being used...
Read More
Cisco confirms CVE-2026-20079 flaw in Secure FMC is exploited in attacks

The company addressed vulnerabilities in four distinct products on May 13, 2026:

Ivanti Secure Access Client: CVE-2026-7431 and CVE-2026-7432
Ivanti Xtraction: CVE-2026-8043
Ivanti Virtual Traffic Manager (vTM): CVE-2026-8051
Ivanti Endpoint Manager (EPM): CVE-2026-8109, CVE-2026-8110, CVE-2026-811

Ivanti said that none of these flaws have been used by attackers and that they do not impact any other Ivanti products.

Ivanti confirmed that several of the vulnerabilities disclosed today were discovered directly through AI-assisted review rather than conventional tooling.

The company recognized a clear truth in the industry: AI is speeding up how quickly problems can be used. Bad actors are using automation and machine learning to take advantage of new flaws quicker than ever.

Ivanti’s solution is to use the same technology in its red teams. They find and fix problems before attackers can take advantage of them.

Security teams using any of the four affected products should quickly focus on fixing them, even if there is no current attack.

Related News:

OpenAI Unveils “Daybreak” To Automates Vulnerability Detection and Fixing

Microsoft Patch Tuesday May 2026 fixed 120 flaws, Including 29 Critical RCE

Check Also

VPN flaws

Critical Check Point VPN flaws allow remote code execution attacks

Check Point Software has revealed and fixed two major VPN flaws, CVE-2026-85102 and CVE-2026-85103. Both …