Are Virtual Machines the New Gold for Cyber Criminals?
ID: 7198b344-f615-5099-b903-9ed405a0a4df
STIX ID: report--7198b344-f615-5099-b903-9ed405a0a4df
Feed Name: McAfee Labs Blog
This McAfee blog details critical VMware vCenter vulnerabilities (notably CVE-2021-21985 with CVSS 9.8 and CVE-2021-21986) that enable remote code execution or plugin authentication bypass, notes ~55,000 publicly reachable ESXi/vCenter servers potentially vulnerable, documents ransomware groups (DarkSide, Babuk) and initial-access brokers targeting virtualized environments and ESXi hosts, and provides patching and mitigation guidance including inventory, network access restriction, disabling internet exposure, and applying VMware patches.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
