Skip to main content

Tag: virtualization

7 articles

Rows of computer servers and storage equipment in a data center with highlighted device.

VMware vCenter Vulnerability Exploited for Persistent Remote Access

Hackers are quickly exploiting a high-severity vulnerability in VMware vCenter, using it to gain persistent remote access to affected systems, with evidence of attacks emerging just days after patches were released. This alarming timeline suggests that publicly disclosing vulnerabilities can sometimes inadvertently hand attackers a roadmap for exploitation.

Analyst 207
Server room interior with computer racks, cables, and partially pulled-out equipment.

Linux KVM Flaw Lets Privileged Guests Escape to Host

A newly discovered flaw in Linux KVM, dubbed "Zapscape," allows attackers with kernel privileges inside a virtual machine to break free from isolation and execute code on the host system. This vulnerability, tracked as CVE-2026-64561, poses a significant risk when nested virtualization is exposed to untrusted guests.

Analyst 207
Technicians in a data center show concern while examining equipment with a blank screen.

Broadcom Disrupts VMware with Emergency Patches for Critical Flaws

Broadcom has just released emergency security patches to tackle critical flaws in VMware's vCenter, ESX, Workstation, and Fusion - and it's urging admins to act fast, treating affected systems as immediately vulnerable. Three critical vulnerabilities, including CVE-2026-59309, CVE-2026-59310, and CVE-2026-47876, are among the five patched across these products and others that contain vCenter or ESX.

Analyst 207
Rows of computer servers and networking equipment in a data center, with a central server rack in sharp focus.

Broadcom Fixes VMware Flaws That Allow Auth Bypass and Code Execution

Broadcom has patched critical VMware vCenter flaws, including a severe authentication-bypass vulnerability that could let hackers gain unauthorized access to your system. This game-changing flaw, rated 9.8 in severity, can be exploited by malicious actors with network access to wreak havoc on your VMware environment.

Analyst 207
Technicians in a brightly-lit server room inspect rows of computer servers with blinking lights, showing concern.

OVH Disrupts Januscape Bug with Mass Reboots

To minimize risk to customers, OVH took swift action with mass reboots to disrupt the Januscape bug, opting for decisive action over detailed communication that could have tempted some to test the publicly available exploit. This critical flaw, tracked as CVE-2026-53359, allowed attackers to escape guest VMs and wreak havoc on host systems.

Analyst 207
Virtual machine setup on a computer in a well-lit room with a monitor display.

Linux Flaw Enables VM Escape on Intel, AMD Devices

A newly disclosed 16-year-old Linux kernel vulnerability, dubbed Januscape, allows hackers to easily escape virtual machines and compromise their host systems - all with just a few clicks from within the guest system. This shocking security flaw, tracked as CVE-2026-53359, has been lurking in the kernel for nearly two decades.

Analyst 207
Server setup in a clean lab environment shows signs of vulnerability.

Linux KVM Flaw Lets Guest VMs Escape to Host on Intel, AMD Systems

A newly discovered 16-year-old flaw in Linux's KVM, nicknamed "Januscape," allows guest virtual machines to break free and interact with their host systems on Intel and AMD machines, potentially leading to full host code execution. This vulnerability, tracked as CVE-2026-53359, can cause a host to panic and be exploited for malicious purposes.

Analyst 207