Critical VMware vCenter Flaw Exploited by Suspected China-Nexus APT

Cybersecurity researchers have identified a suspected China-nexus advanced persistent threat (APT) actively exploiting a recently patched critical directory-traversal vulnerability, CVE-2026-59310, in Broadcom VMware vCenter. The flaw, with a CVSS score of 9.8, allows for arbitrary code execution and is being leveraged to deploy Babuk-derived ransomware.

Want more?

Open NewsSnap.ai for the full app experience, including audio, personalization, and more news tools.

Open NewsSnap.ai