MITRE
Disclosed Apr 19, 20242 years agoUnverified
Chinese state hackers breach MITRE research network via Ivanti zero-days
MITRE disclosed that a China-linked nation-state actor chained two Ivanti Connect Secure zero-day flaws to breach its NERVE research and prototyping network in early 2024 and created rogue virtual machines in its VMware environment. MITRE said its core enterprise network and partner systems were not affected.
What is known
| People affected | Not stated in the sources we have |
|---|---|
| Disclosed | Apr 19, 2024 |
| Discovered | Jan 2024 |
| Attack | Hacking |
| Data exposed | Internal documents |
| Sector | Nonprofit · US |
| Status | Unverified: not yet confirmed by an official notice, a filing or the organization |
Sources
| Source | |
|---|---|
| MITRE December 2023 attack: Threat actors created rogue VMs to evade detectionsecurityaffairs.com · News | News |
Notices filed
| Where | Filed | People |
|---|---|---|
| Researchtotal | Apr 19, 2024 |
History of this record
- 2026-09-25 · added · seed source
First seen 2026-09-25 (Research). Record counts are as reported. Not legal advice.