Ivanti EPMM Under Single-IP RCE Siege
A critical remote code execution flaw, tracked as CVE-2026-1281, is affecting Ivanti Endpoint Manager Mobile (EPMM) and being heavily exploited, according to security data. GreyNoise reports that 83% of these attacks originate from one IP address, 193.24.123.42, registered to PROSPERO OOO, known for “bulletproof” hosting. This IP was notably absent from initial indicators of compromise […]
