The Royal ransomware group, believed to be composed of ex-Conti gang members, has intensified its operations since its emergence last year. The group has primarily targeted critical infrastructure and healthcare organizations and has recently extended its reach to Linux and VMware ESXi environments. Recent Developments: Palo Alto Networks’ Unit 42 division reported on May 9…
Read moreCategory: Security Advisory
Critical Alert: VMware Aria Operations for Logs Certificate Expiration & How to Address It
If you’re using VMware Aria Operations for Logs (formerly known as VMware vRealize Log Insight), it’s essential to be aware of an urgent update regarding the internal certificate of all vRealize Log Insight deployments. These certificates are set to expire on April 30th, 2023, and failing to address this issue before the deadline could lead…
Read moreUnderstanding Authorization Mechanisms in vSphere
In the world of vSphere, ensuring that users have the appropriate access and permissions to perform tasks is of utmost importance. To manage this effectively, vSphere offers multiple authorization models that dictate which actions a user is permitted to carry out. This blog post delves into the core concepts of vSphere authorization, focusing on group…
Read moreESXi 7.0 Update 3k: The Latest Patch Released Three Weeks After Update ESXi 7.0 Update 3J”
Three weeks after releasing ESXi Update 3j, VMware has announced the release of yet another patch, Update 3k. This new patch comes with several bug fixes, including the resolution of issues that were grouped as follows: Build Details Download Filename: VMware-ESXi-7.0U3k-21313628-depot Build: 21313628 Download Size: 378.7 MB md5sum 5de990d0ac9f9a2d0be05e75a4fc1595 sha256checksum: 6760070a49eadfaae1fe906d90a783e642fe207ed9bd7f98e400c1ac543eb6e5 Host Reboot Required: Yes Virtual…
Read moreValentine’s gift from VMware: Discover What’s New in VMware ESXi 8.0b – A Comprehensive Release Notes GuideValentine’s gift from VMware
As a Valentine’s Day treat for IT administrators, VMware has just released a new patch for their virtualization software, ESXi 8.0b. This update promises to deliver a range of exciting new features and improvements to the platform, enhancing performance, stability, and security. IT admins and system administrators who are responsible for managing and maintaining virtual…
Read moreESXiArgs Ransomware -Recover tool is now available!
CISA has developed ESXiArgs-Recover, a tool aimed at assisting organizations in their attempts to recover virtual machines affected by ESXiArgs ransomware attacks. Some organizations have reported successful recovery of files without having to pay a ransom. The tool has been created using publicly available resources, including a tutorial by Enes Sonmez and Ahmet Aykac. It…
Read moreESXiArgs Ransomware: Someone is encrypting an unpatched VMware ESXi 6.X servers that are open to the internet.
Warnings are being issued by administrators, hosting providers, and the French Computer Emergency Response Team (CERT-FR) that attackers are actively targeting VMware ESXi servers that are vulnerable due to a two-year-old unpatched remote code execution flaw. The ultimate goal of these attackers is to install ransomware on these systems. The vulnerability tracked as CVE-2021-21974 is…
Read moreVMware ESXi 7.0 Update 3j has been released today!
This patch addresses the following issues: Build Details Download Filename: VMware-ESXi-7.0U3j-21053776-depot Build: 21053776 Download Size: 379.0 MB md5sum: 7f67b843759aacc1a05d2074149bcc9b sha256checksum: ddff86dcdbe00180b7c6281770715a40c597c12f8c60ecee980167c25ada45ea Host Reboot Required: Yes Virtual Machine Migration or Shutdown Required: Yes Components Component Bulletin Category Severity ESXi Component – core ESXi VIBs ESXi_7.0.3-0.70.21053776 Bugfix Critical ESXi Install/Upgrade Component esx-update_7.0.3-0.70.21053776 Bugfix Critical With vSphere 7.0 and…
Read moreA vulnerability has been discovered in VMware’s vRealize Log Insight
Multiple vulnerabilities in VMware vRealize Log Insight were privately reported to VMware. These vulnerabilities affect users of VMware’s vRealize Log Insight, a log collection and analytics virtual appliance used by administrators to collect, view, manage and analyze syslog data. Updates and workarounds are available to address these vulnerabilities in affected VMware products. VMware on Tuesday…
Read moreRecently, over 45,000 VMware ESXi systems reached their end of life.
VMware ESXi 6.5 and ESXi 6.7 reached end-of-life on October 15, 2022, and will no longer receive technical support or security updates, putting the software at risk of vulnerabilities. The company examined data from 6,000 customers and discovered 79,000 VMware ESXi servers installed. 36.5% (28,835) of those servers are running version 6.7.0, which was released…
Read more