Close Menu

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    Smart Investors vs. Dumb Investors

    June 15, 2026

    Trump Is Trying To Bury His UFC ‘Failure’ By Striking A ‘Bad Deal’ To End Iran War, GOP Strategist Says

    June 15, 2026

    Get 40% Off Men’s Merrell Shoes Just In Time For Father’s Day

    June 15, 2026
    Facebook X (Twitter) Instagram
    Trending
    • Smart Investors vs. Dumb Investors
    • Trump Is Trying To Bury His UFC ‘Failure’ By Striking A ‘Bad Deal’ To End Iran War, GOP Strategist Says
    • Get 40% Off Men’s Merrell Shoes Just In Time For Father’s Day
    • What Funeral Directors Don’t Want You to Know
    • 8 Strength-Building Exercises That Don’t Require Lifting Weights
    • As Anthropic suspends access to new models, India debates its AI future
    • Indiana Jones and the Mystery Project of Hat
    • Trump’s Name Is Currently Being Removed From The Kennedy Center
    Facebook X (Twitter)
    SBM Global News
    Demo
    • Home
    • Top Stories
      • Politics
    • Business
      • Small Business
      • Marketing
    • Finance
      • Investment
    • Technology

      As Anthropic suspends access to new models, India debates its AI future

      June 14, 2026
      Read More

      Founderr.io – Company Profile – AllBusiness.com

      June 14, 2026
      Read More

      Chinese cybercrime operation that used AI to scam ‘hundreds of thousands of victims’ sued by Google

      June 13, 2026
      Read More

      What AI Agents Actually Do for Customer Service—And How to Pick One

      June 12, 2026
      Read More

      Opendoor’s India exit is fueling a bigger conversation about AI and outsourcing

      June 11, 2026
      Read More
    • Lifestyle
      • Travel
    • Feel Good
    • Get In Touch
    SBM Global News
    Demo
    Home»Technology»Broadcom urges VMware customers to patch ’emergency’ zero-day bugs under active exploitation
    Technology

    Broadcom urges VMware customers to patch ’emergency’ zero-day bugs under active exploitation

    By Staff WriterMarch 6, 20253 Mins Read
    Facebook Twitter LinkedIn Reddit Email
    #image_title
    Share
    Facebook Twitter LinkedIn Pinterest Email

    U.S. technology giant Broadcom is warning that a trio of VMware vulnerabilities are being actively exploited by malicious hackers to compromise the networks of its corporate customers. 

    The three vulnerabilities — collectively dubbed “ESXicape” by one security researcher — affect VMware ESXi, Workstation, and Fusion, which are widely-used software hypervisor products that allow multiple virtual machines to be managed on a single server. Hypervisors are commonly used to reduce the need to take up physical server space.

    Broadcom, which acquired VMware in 2023, said that the vulnerabilities (tracked as CVE-2025-22224, CVE-2025-22225, and CVE-2025-22226) could allow an attacker with administrator or root privileges on a virtual machine to escape its protected sandbox and gain broader unauthorized access to the underlying hypervisor product.

    With access to the hypervisor, an attacker can gain access to any other virtual machine, including virtual systems owned by other companies within the same physical data center.

    Broadcom says it has “information to suggest” that the vulnerabilities have been exploited in the wild. 

    “The impact here is huge, an attacker who has compromised a hypervisor can go on to compromise any of the other virtual machines that share the same hypervisor,” Stephen Fewer, principal security researcher at threat intelligence company Rapid7, told TechCrunch. 

    Broadcom did not share any details about the nature of the attacks or the threat actors behind them and did not say whether any customer data had been accessed. A spokesperson for Broadcom did not respond to TechCrunch’s questions. Microsoft, which discovered and reported the vulnerabilities to Broadcom, also didn’t respond by press time. 

    Security researcher Kevin Beaumont said in a post on Mastodon that the three vulnerabilities are actively being exploited by an as-yet-unnamed ransomware group.

    VMware vulnerabilities are frequently targeted by ransomware groups due to their ability to be exploited to compromise multiple servers during a single attack, and given that sensitive corporate data is often stored in these virtualized environments. 

    Microsoft discovered in 2024 that multiple ransomware groups were exploiting a VMware hypervisor flaw in attacks deploying Black Basta and LockBit ransomware in data-stealing campaigns targeting corporate data. The previous year, a large-scale hacking campaign, dubbed “ESXIArgs,” saw ransomware groups exploit a two-year-old VMware vulnerability to target thousands of organizations worldwide.

    Broadcom has released patches for the three vulnerabilities, which are classed as “zero-day” bugs due to the fact they were exploited before a fix was made available. Broadcom described its security advisory as an “emergency” change and is urging customers to apply the patches as soon as possible.

    U.S. government cybersecurity agency CISA is also warning federal agencies to patch against the bugs, which it has added to its running catalog of vulnerabilities known to be under attack.

    View original article here

    Demo
    Share. Facebook Twitter LinkedIn Email Reddit
    Previous ArticleRaffles Hotels opens Raffles Sentosa Singapore
    Next Article Wedding Website Examples

    Related Posts

    As Anthropic suspends access to new models, India debates its AI future

    June 14, 2026
    Read More

    Founderr.io – Company Profile – AllBusiness.com

    June 14, 2026
    Read More

    Chinese cybercrime operation that used AI to scam ‘hundreds of thousands of victims’ sued by Google

    June 13, 2026
    Read More
    Add A Comment

    Leave A Reply Cancel Reply

    Demo
    Top Posts

    Former FBI, CIA Head Has ‘Serious Concerns’ With Trump Cabinet Picks

    December 28, 2024435

    Emirates to operate next-gen A350 on the third daily service to Cape Town

    January 14, 2026256

    AAVE Price Prediction: Target $215-225 by Mid-January 2025 as Technical Indicators Signal Bullish Momentum

    December 15, 2025240

    Ventive Hospitality Joins Green Fins: Strong ESG Lift

    February 17, 2026211
    Don't Miss
    Investment

    Smart Investors vs. Dumb Investors

    By Staff WriterJune 15, 20265 Mins Read

    Every year I do some back-of-the-envelope investment planning to set some goalposts. It’s a useful…

    Read More

    Trump Is Trying To Bury His UFC ‘Failure’ By Striking A ‘Bad Deal’ To End Iran War, GOP Strategist Says

    June 15, 2026

    Get 40% Off Men’s Merrell Shoes Just In Time For Father’s Day

    June 15, 2026

    What Funeral Directors Don’t Want You to Know

    June 14, 2026
    Stay In Touch
    • Facebook
    • Twitter
    Demo
    About Us

    Small Business Minder brings together business and related news from around the world in one place. Follow us for all the business news you'll need.

    Facebook X (Twitter)
    Our Picks

    Smart Investors vs. Dumb Investors

    June 15, 2026

    Trump Is Trying To Bury His UFC ‘Failure’ By Striking A ‘Bad Deal’ To End Iran War, GOP Strategist Says

    June 15, 2026
    Most Popular

    Former FBI, CIA Head Has ‘Serious Concerns’ With Trump Cabinet Picks

    December 28, 2024435

    Emirates to operate next-gen A350 on the third daily service to Cape Town

    January 14, 2026256
    © 2026 Small Business Minder
    • Home
    • Get In Touch

    Type above and press Enter to search. Press Esc to cancel.

    Ad Blocker Enabled!
    Ad Blocker Enabled!
    Our website is made possible by displaying online advertisements to our visitors. To get the most from our site, please disable your Ad Blocker.