* . *
  • About
  • Advertise
  • Privacy & Policy
  • Contact
Sunday, May 3, 2026
Earth-News
  • Home
  • Business
  • Entertainment

    Discover the Top 5 Cruise Lines Delivering Unforgettable Onboard Entertainment in 2026

    Melco Resorts’ Margin Rebound Challenges Optimistic Earnings Expectations

    Peacock Takes Flight: United Unveils Exciting New Inflight Entertainment Channel

    Discover the Top Indie Movies You Can’t Miss in Seattle This May 2026

    Discover the Best Live and Local Entertainment This Week!

    Ballet Arkansas Debuts ‘Origins’ in North Little Rock as Helena Comes Alive with Jazz on the River

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology

    Rising Senior in Electrical and Computer Engineering Shines as One of Six Finalists in Alabama Launchpad Technology Competition

    Student’s Malicious Software Sparks Major Tech Disruption in Kentwood Schools

    2026 Technology Roundtable: Unveiling the Future of Supply Chain Innovation

    Solar Fab-Tech USA 2026: Powering the Future of Solar Innovation and Manufacturing

    How High Can This Technology Rally Soar?

    Chinese Green Technology Raises National Security Concerns for Europe, Report Warns

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
  • Home
  • Business
  • Entertainment

    Discover the Top 5 Cruise Lines Delivering Unforgettable Onboard Entertainment in 2026

    Melco Resorts’ Margin Rebound Challenges Optimistic Earnings Expectations

    Peacock Takes Flight: United Unveils Exciting New Inflight Entertainment Channel

    Discover the Top Indie Movies You Can’t Miss in Seattle This May 2026

    Discover the Best Live and Local Entertainment This Week!

    Ballet Arkansas Debuts ‘Origins’ in North Little Rock as Helena Comes Alive with Jazz on the River

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology

    Rising Senior in Electrical and Computer Engineering Shines as One of Six Finalists in Alabama Launchpad Technology Competition

    Student’s Malicious Software Sparks Major Tech Disruption in Kentwood Schools

    2026 Technology Roundtable: Unveiling the Future of Supply Chain Innovation

    Solar Fab-Tech USA 2026: Powering the Future of Solar Innovation and Manufacturing

    How High Can This Technology Rally Soar?

    Chinese Green Technology Raises National Security Concerns for Europe, Report Warns

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
Earth-News
No Result
View All Result
Home Technology

CISA warns of VMware ESXi bug exploited in ransomware attacks

July 31, 2024
in Technology
CISA warns of VMware ESXi bug exploited in ransomware attacks
Share on FacebookShare on Twitter

CISA

CISA has ordered U.S. Federal Civilian Executive Branch (FCEB) agencies to secure their servers against a VMware ESXi authentication bypass vulnerability exploited in ransomware attacks.

Broadcom subsidiary VMware fixed this flaw (CVE-2024-37085) discovered by Microsoft security researchers on June 25 with the release of ESXi 8.0 U3.

CVE-2024-37085 allows attackers to add a new user to the ‘ESX Admins’ group—not present by default but can be added after gaining high privileges on the ESXi hypervisor—which will automatically be assigned full administrative privileges.

Even though successful exploitation would require user interaction and high privileges to pull off, and VMware rated the vulnerability as medium-severity, Microsoft revealed on Monday week that several ransomware gangs are already exploiting it to escalate to full admin privileges on domain-joined hypervisors.

Once they gain admin permissions, they steal sensitive data from VMs, move laterally through victims’ networks, and then encrypt the ESXi hypervisor’s file system, causing outages and disrupting business operations.

So far, CVE-2024-37085 has been exploited by ransomware operators tracked as Storm-0506, Storm-1175, Octo Tempest, and Manatee Tempest to deploy Akira and Black Basta ransomware.

Federal agencies have three weeks to secure vulnerable systems

Following Microsoft’s report, CISA has added the security vulnerability to its ‘Known Exploited Vulnerabilities’ catalog, serving as a warning that threat actors are leveraging it in attacks.

Federal Civilian Executive Branch Agencies (FCEB) agencies now have three weeks until August 20 to secure their systems against ongoing CVE-2024-37085 exploitation, according to the binding operational directive (BOD 22-01) issued in November 2021.

Although this directive only applies to federal agencies, the cybersecurity agency strongly urged all organizations to prioritize fixing the flaw and thwart ransomware attacks that could target their networks.

“These types of vulnerabilities are frequent attack vectors for malicious cyber actors and pose significant risks to the federal enterprise,” CISA warned.

For years, ransomware operations have shifted their focus to targeting their victims’ ESXi virtual machines (VMs), particularly after the victims have started using them to store sensitive data and host critical applications.

However, until now, they’ve primarily used Linux lockers designed to encrypt VMs rather than exploiting specific security vulnerabilities in ESXi (such as CVE-2024-37085), even though doing so could provide a faster way to access victims’ hypervisors.

>>> Read full article>>>
Copyright for syndicated content belongs to the linked Source : BleepingComputer – https://www.bleepingcomputer.com/news/security/cisa-warns-of-vmware-esxi-bug-exploited-in-ransomware-attacks/

Tags: technologyVMwarewarns
Previous Post

Filip Jorgensen joins Chelsea in £20.7m transfer and already showcasing skills in training

Next Post

Dark Angels ransomware receives record-breaking $75 million ransom

The Captivating Journey of Eyespot Evolution in Skates and Rays

May 3, 2026

Revolutionary Discovery Upends Decades of Fat Metabolism Understanding

May 3, 2026

Tips to Help Your Next Dog Live a Longer, Healthier Life

May 3, 2026

MOV Fitness Expo Empowers Residents with Access to Local Health and Wellness Resources

May 2, 2026

I’m 42 and I realized I haven’t been truly excited about anything in years, not because life is dull, but because I’ve been managing other people’s expectations for so long I forgot I was allowed to have my own – VegOut

May 2, 2026

Remembering the Day the World Learned Osama Bin Laden Was Killed by U.S. Forces in 2011

May 2, 2026

This Week’s Market Wrap: Earnings Fireworks, Oil Shocks, And A Stubborn Economy – Seeking Alpha

May 2, 2026

Discover the Top 5 Cruise Lines Delivering Unforgettable Onboard Entertainment in 2026

May 2, 2026

Janet Mills drops out of race for US Senate – Maine Public

May 2, 2026

Rising Senior in Electrical and Computer Engineering Shines as One of Six Finalists in Alabama Launchpad Technology Competition

May 2, 2026

Categories

Archives

May 2026
M T W T F S S
 123
45678910
11121314151617
18192021222324
25262728293031
« Apr    
Earth-News.info

The Earth News is an independent English-language daily published Website from all around the World News

Browse by Category

  • Business (20,132)
  • Ecology (1,197)
  • Economy (1,218)
  • Entertainment (22,093)
  • General (21,299)
  • Health (10,250)
  • Lifestyle (1,228)
  • News (22,149)
  • People (1,218)
  • Politics (1,236)
  • Science (16,432)
  • Sports (21,715)
  • Technology (16,201)
  • World (1,208)

Recent News

The Captivating Journey of Eyespot Evolution in Skates and Rays

May 3, 2026

Revolutionary Discovery Upends Decades of Fat Metabolism Understanding

May 3, 2026
  • About
  • Advertise
  • Privacy & Policy
  • Contact

© 2023 earth-news.info

No Result
View All Result

© 2023 earth-news.info

No Result
View All Result

© 2023 earth-news.info

Go to mobile version