threat-intel
Critical VMware vCenter Vulnerability in Attackers’ Crosshairs
Critical
Summary
A critical vulnerability (CVE-2026-59310) in VMware vCenter is being actively exploited by an advanced persistent threat (APT) group, leading to remote code execution and persistent access for attackers. The vulnerability was disclosed on July 29th and has seen over 360 victim IP addresses across multiple countries, primarily in Germany, the US, Turkey, Iran, and France. The attackers are utilizing a reverse shell tool to maintain control.
Summary written automatically in our own words from the original article, which belongs to its publisher and remains the reference. It may contain errors. Sources & data