// UNCLASSIFIED // CLEARED FOR PUBLIC RELEASE //
FILE BRC-wedgDTG 0600Z
Breach Record

Ivanti

DISCLOSED 2024-02-28 · RANSOMWARE · RANSOMWARE

The CACTUS ransomware group exploited CVE-2023-38035 in Ivanti MobileIron Sentry within 24 hours of its disclosure to compromise two separate companies simultaneously. The attack involved data exfiltration, encryption of workstations, and subsequent encryption of virtual machines including domain controllers on both ESXi and Hyper-V hosts. Some machines protected by...

The record

What we know

Disclosed
2024-02-28
Attack vector
Ransomware
RANSOMWARE
Sources

Cited reporting

Similar vector · recent

Other ransomware breaches on file

This page is the permanent ColdRecon entry for the Ivanti disclosure. It updates if new public reporting emerges. All tracked breaches →

Ivanti just lived through this. Your next prospect doesn't have to.

ColdRecon turns every disclosed breach into a daily intelligence brief from the seller's seat — normalized to the factors that move a deal, written in the Handler's voice. Request clearance and the first lands tomorrow at 0600.

Request Clearance →