CISA: Critical VMware RCE flaw now exploited by ransomware gangs
Posted by PrivacyWire
Ransomware groups now targeting the VMware vCenter flaw means unpatched virtualization infrastructure is a direct gateway to sensitive data and internal networks, which makes this a privacy and surveillance risk for any organization running it. The delay between a vendor patch and active criminal exploitation shows how quickly known vulnerabilities become tools for extortion and data theft. Has your team already applied the July patch, or are you still assessing exposure to this critical bug?