Threat Actors Actively Exploit Critical VMware vCenter Vulnerability for Persistent Remote Access
Security researchers at QUIRSO have documented active exploitation of a critical flaw affecting Broadcom's VMware vCenter. CVE-2026-59310, with a CVSS…
Immediate priority: identify and document all VMware vCenter deployments in your infrastructure. Deploy Broadcom's security patch without delay, prioritizing internet-facing or untrusted-network-exposed systems. Review access and audit logs for signs of prior exploitation. If patching is not immediately feasible, consider temporary network isolation of vCenter from untrusted segments.