More

    This ransomware gang is using SSH tunnels to target VMware appliances




    • Researchers find hackers using VMware ESXi’s SSH tunneling in attacks
    • The campaigns end up with ransomware infections
    • The researchers suggested ways to hunt for indicators of compromise

    Cybercriminals are using SSH tunneling functionality on ESXi bare metal hypervisors for stealthy persistence, to help them deploy ransomware on target endpoints, experts have warned.

    Cybersecurity researchers from Sygnia have highlighted how ransomware actors are targeting virtualized infrastructure, particularly VMware ESXi appliances, enterprise-grade, bare-metal hypervisors used to virtualize hardware, enabling multiple virtual machines to run on a single physical server.

    https://cdn.mos.cms.futurecdn.net/3Ek42Bm7W4No2qAL4PKvCU-1200-80.jpg



    Source link

    Latest articles

    spot_imgspot_img

    Related articles

    Leave a reply

    Please enter your comment!
    Please enter your name here

    spot_imgspot_img