Hackers Actively Exploiting VMware vCenter Systems to Gain and Maintain Remote Access

An active cyberattack campaign targeting internet-accessible VMware vCenter instances. QUIRSO researchers uncovered evidence that advanced persistent threat (APT) actors are actively weaponizing CVE-2026-59310, a critical VMware vCenter vulnerability, to gain initial access before deploying reverse SSH tooling to establish persistent backdoors into compromised networks. Tracked as CVE-2026-59310, the flaw is a maximum-severity directory-traversal vulnerability residing […]

This article has been indexed from Cyber Security News

Read the original article: