Tag: cybersecurityblogs

New Wave of Ransomware Attacks Exploiting VMware Bug to Target ESXi Servers
Risk, Security

New Wave of Ransomware Attacks Exploiting VMware Bug to Target ESXi Servers

A recent wave of assaults targets VMware ESXi hypervisors with the intention of installing malware on infected systems. A fix for CVE-2021-21974 has been available since February 23, 2021, according to an alert sent on Friday by the French Computer Emergency Response Team (CERT). VMware identified the problem as an OpenSLP heap-overflow vulnerability that might result in the execution of arbitrary code in its own alert that was published at the time. The virtualization services provider stated that a malicious actor that is present on the same network segment as ESXi and has access to port 427 may be able to start the heap-overflow problem that leads to remote code execution in the OpenSLP service read the complete article New Wave of Ransomware Attacks Exploiting VMware Bug to T...