Nation-State Cyber Threats
Suspected China-Nexus APT Exploits a VMware vCenter Flaw to Plant Babuk-Derived Ransomware
Researchers attribute exploitation of VMware vCenter CVE-2026-59310, a CVSS 9.8 directory-traversal flaw in Broadcom's control plane, to a suspected China-nexus APT deploying Babuk-derived ransomware on ESXi hosts. Patching alone may not evict an established intruder.