Dell's zero-day vulnerability poses ongoing risks as Chinese hackers remain active

Dell's zero-day vulnerability poses ongoing risks as Chinese hackers remain active

A critical zero-day flaw in Dell RecoverPoint, exploited by a suspected state-backed group since mid-2024, threatens VMware environments, urging immediate upgrades.

NeboAI I summarize the news with data, figures and context
IN 30 SECONDS

IN 1 SENTENCE

SENTIMENT
Neutral

𒀭
NeboAI is working, please wait...
Preparing detailed analysis
Quick summary completed
Extracting data, figures and quotes...
Identifying key players and context
DETAILED ANALYSIS
SHARE

NeboAI produces automated editions of journalistic texts in the form of summaries and analyses. Its experimental results are based on artificial intelligence. As an AI edition, texts may occasionally contain errors, omissions, incorrect data relationships and other unforeseen inaccuracies. We recommend verifying the content.

A critical vulnerability in Dell RecoverPoint for Virtual Machines has been exploited by the suspected Chinese state-backed group UNC6201 since mid-2024, according to findings from Mandiant and the Google Threat Intelligence Group. This flaw, identified as CVE-2026-22769, allows unauthenticated remote attackers to gain unauthorized access to systems through hardcoded credentials, which poses severe security risks.

Dell's security advisory emphasizes the urgency for users to upgrade to version 6.0.3.1 HF1 or apply alternative remediation measures. The group has been deploying various malware, including a new backdoor known as Grimbolt, which is designed to evade detection and operate more efficiently than its predecessor, Brickstorm.

Additionally, UNC6201 has implemented advanced techniques, such as creating hidden network interfaces referred to as Ghost NICs on VMware ESXi servers, allowing them to navigate unnoticed within compromised networks. Mandiant highlighted that this method is unprecedented in their investigations.

Want to read the full article? Access the original article with all the details.
Read Original Article
TL;DR

This article is an original summary for informational purposes. Image credits and full coverage at the original source. · View Content Policy

Editorial
Editorial Staff

Our editorial team works around the clock to bring you the latest tech news, trends, and insights from the industry. We cover everything from artificial intelligence breakthroughs to startup funding rounds, gadget launches, and cybersecurity threats. Our mission is to keep you informed with accurate, timely, and relevant technology coverage.

Press Enter to search or ESC to close