TargetCompany’s Linux Variant Targets ESXi Environments

June 5, 2024 at 05:56AM A new Linux variant of TargetCompany ransomware has been discovered, using a custom shell script to deliver and execute the payload, as well as exfiltrate victim information. This variant also targets VMware ESXi environments, potentially increasing the impact and chances of ransom payment. Trend Micro has observed increased activity of … Read more

The Week in Ransomware – April 5th 2024 – Virtual Machines under Attack

April 5, 2024 at 06:04PM Numerous enterprises have fallen victim to ransomware attacks on virtual machine platforms, causing widespread disruption and loss of services. Attackers targeted companies like Panera, Omni Hotels, and IxMetro Powerhost, encrypting their virtual machines and demanding ransom. The attacks highlight the vulnerability of virtual machine platforms and the importance of robust … Read more

Chilean hosting firm’s VMware ESXi servers hit by new SEXi ransomware

April 3, 2024 at 06:02PM Chilean data center and hosting provider IxMetro Powerhost fell victim to a ransomware attack by a new gang called SEXi, impacting VMware ESXi servers and backups. The CEO stated that negotiations with the attackers are discouraged, and the ransom demand equates to $140 million. PowerHost is working with security agencies … Read more

Linux version of Qilin ransomware focuses on VMware ESXi

December 3, 2023 at 04:11PM Security researchers discovered an advanced Linux encryptor made by the Qilin ransomware gang targeting VMware ESXi servers. This customizable encryptor focuses on virtual machine encryption and snapshot deletion while offering a wide range of command-line options for operational flexibility. Qilin, which emerged from the “Agenda” operation, conducts double-extortion attacks and … Read more

Windows Server 2022 update gave ESXi host VMs the blue screen blues

November 16, 2023 at 10:52AM Microsoft’s Ignite event will likely not address the problematic Windows Server 2022 Virtual Machines caused by the KB5031364 October update. The update caused issues with starting VMs on VMware ESXi hosts. Microsoft released a fix in November’s update, KB5032198. Administrators had workarounds before the fix, and users expressed disappointment in … Read more

Microsoft shares temp fix for broken Windows Server 2022 VMs

November 9, 2023 at 01:11PM Microsoft has acknowledged a problem causing Windows Server 2022 VMs to experience blue screens and boot failures on VMware ESXi hosts. The issue is related to a specific update released in October 2023. VMware ESXi hosts with certain configurations are affected. Microsoft is working on a fix, but in the … Read more