중국 연계 심각한 사이버 공격자가 VMware vCenter 보안 결함을 이용해 ransomware를 배포했습니다.
사이버 보안 연구자들은 중국 연계의 고급 지속 위협(APT)이 Broadcom VMware vCenter의 최근 보안 결함을 악용하고 있다고 보고했습니다. 이 공격은 CVE-2026-59310을 이용한 것으로, CVSS 점수는 9.8로 심각한 디렉토리 탐색 취약점입니다. 악의적인 행위자는 이를 통해 임의의 코드를 실행할 수 있는 것으로 알려졌습니다.
A China-linked actor exploits a VMware vCenter flaw to deploy Babuk-derived ransomware.
Cybersecurity researchers have attributed the exploitation of a newly patched security flaw in Broadcom VMware vCenter to a suspected China-nexus advanced persistent threat (APT). The attacks involve the exploitation of CVE-2026-59310, a severe directory-traversal vulnerability with a CVSS score of 9.8. This flaw could be weaponized by malicious actors to execute arbitrary code.