June 14, 2023, 8:44 a.m. | Pierluigi Paganini

Security Affairs securityaffairs.co

A China-linked APT group tracked as UNC3886 has been spotted exploiting a VMware ESXi zero-day vulnerability. Mandiant researchers observed a China-linked cyberespionage group, tracked as UNC3886, exploiting a VMware ESXi zero-day vulnerability tracked as CVE-2023-20867. “VMware Tools contains an Authentication Bypass vulnerability in the vgauth module.” reads the advisory published by VMware. “A fully compromised […]


The post China-linked APT UNC3886 used VMware ESXi Zero-Day appeared first on Security Affairs.

advisory apt authentication authentication bypass bypass china china-linked apt cve cyberespionage esxi exploiting hacking information security news intelligence it information security mandiant pierluigi paganini researchers tools unc3886 vmware vmware esxi vulnerability zero-day zero-day vulnerability

CyberSOC Technical Lead

@ Integrity360 | Sandyford, Dublin, Ireland

Cyber Security Strategy Consultant

@ Capco | New York City

Cyber Security Senior Consultant

@ Capco | Chicago, IL

Senior Security Researcher - Linux MacOS EDR (Cortex)

@ Palo Alto Networks | Tel Aviv-Yafo, Israel

Sr. Manager, NetSec GTM Programs

@ Palo Alto Networks | Santa Clara, CA, United States

SOC Analyst I

@ Fortress Security Risk Management | Cleveland, OH, United States