UNC5221 Exploits Ivanti EPMM: What Adarma’s Incident Responders Have Uncovered
CYBER INSIDERS6 Juni 2025

UNC5221 Exploits Ivanti EPMM: What Adarma’s Incident Responders Have Uncovered

In this episode of Cyber Insiders, Cian Heasley, Threat Lead at Adarma, walks us through our Incident Response team's investigation into the exploitation of Ivanti Endpoint Manager Mobile (EPMM) by UNC5221, a threat group linked to the Chinese state.

Cian breaks down how the attackers chained CVE-2025-4427 and CVE-2025-4428 to gain unauthenticated remote code execution, what tools and techniques they used, and explains why this campaign shows signs of strategic pre-positioning.

Det här avsnittet är hämtat från ett öppet RSS-flöde och publiceras inte av Podme. Det kan innehålla reklam.

Avsnitt(18)

Cyber Threats Amid Escalations in the Israel-Iran Conflict

Cyber Threats Amid Escalations in the Israel-Iran Conflict

In this episode of Cyber Insiders, Cian Heasley, Threat Lead at Adarma, shares his insight into how rising geopolitical tensions in the Middle East are influencing cyber activity. He breaks down the r...

23 Juni 202510min

Turning Noise into Insight with Smarter Data Strategy

Turning Noise into Insight with Smarter Data Strategy

In this episode of Cyber Insiders Jamie McCallion, Partner & Technical Manager at Splunk joins us to explore how cybersecurity teams can turn data overload into actionable insight. She shares advice o...

11 Juni 202525min

Think Like an Attacker: Creative Testing for Real Resilience

Think Like an Attacker: Creative Testing for Real Resilience

In this episode of Cyber Insiders, we sit down with Leanne Salisbury, Principal Consultant at Adarma, to explore how creative cybersecurity testing can help organisations go beyond compliance and surf...

27 Maj 202513min

Retail Under Attack: What You Need to Know About DragonForce Ransomware

Retail Under Attack: What You Need to Know About DragonForce Ransomware

In this episode of Cyber Insiders, Cian Heasley, Threat Lead at Adarma, breaks down the rise of DragonForce — a ransomware group linked to recent attacks on major UK retailers. He explores their tools...

9 Maj 202512min

The Helpdesk Hustle: How Scattered Spider Cons Its Way Inside

The Helpdesk Hustle: How Scattered Spider Cons Its Way Inside

In this episode of Cyber Insiders, Cian Heasley, Threat Lead at Adarma, explores the rise of Scattered Spider — a fast-moving cyber threat group linked to the high-profile ransomware attack on UK reta...

1 Maj 202514min

From Crisis to Control

From Crisis to Control

In this episode of Cyber Insiders, Laura Ingram, Managing Consultant at Adarma, shares her firsthand experience during a major ransomware attack. She explores the initial response, the importance of e...

17 Apr 202521min

Phishing-as-a-Service: The Cybercrime Subscription That Comes with a Help Desk

Phishing-as-a-Service: The Cybercrime Subscription That Comes with a Help Desk

Phishing-as-a-Service (PhaaS) is making it easier than ever for attackers to launch sophisticated phishing campaigns. In this episode of Cyber Insiders, Adarma’s Threat Intelligence Specialist Alison ...

17 Mars 202521min

Populärt inom Teknik

uppgang-och-fall
elbilsveckan
market-makers
bilar-med-sladd
rss-laddstationen-med-elbilen-i-sverige
rss-elektrikerpodden
developers-mer-an-bara-kod
natets-morka-sida
rss-veckans-ai
skogsforum-podcast
rss-technokratin
bosse-bildoktorn-och-hasse-p
under-femton
har-vi-akt-till-mars-an
ai-sweden-podcast
rss-uppgang-och-fall
rss-upplyst-entreprenordirektor
rss-bakom-boken
rss-powerboat-sverige-podcast
rss-hit-med-dina-lunchpengar