Royal Ransomware is the latest ransomware operation to add support for encrypting Linux devices to its most recent malware variants, specifically targeting VMware ESXi virtual machines. . BleepingComputer has been reporting on similar Linux ransomware encryptors released by multiple other gangs, including Black Basta , LockBit , BlackMatter , AvosLocker , REvil , HelloKitty , RansomEXX , and Hive . The new Linux Royal Ransomware variant was discovered by Will Thomas of the Equinix Threat Analysis Center (ETAC), and is executed using the command line. . Sovereign Malware is now directed at Linux environments through VMware ESXi, posing serious security challenges. Discover more about this risk.. Royal Ransomware, Linux Encryption, VMware Threat, ESXi Malware. . LinuxSecurity.com Team
The Hive ransomware operation has converted their VMware ESXi Linux encryptor to the Rust programming language and added new features to make it harder for security researchers to snoop on victim's ransom negotiations. . As the enterprise becomes increasingly reliant on virtual machines to save computer resources, consolidate servers, and for easier backups, ransomware gangs are creating dedicated encryptors that focus on these services. Ransomware gang's Linux encryptors typically target the VMware ESXI virtualization platforms as they are the most commonly used in the enterprise. . Cybercriminals are evolving Linux file-lockers using Rust programming. Unveil their strategies impacting VMware virtual machine protection.. Linux Ransomware, VMware ESXi, Rust Encryptor. . LinuxSecurity.com Team
VMware has advised of a total of 93 vulnerabilities in several of its products, including ESX Server, Server, VirtualCenter and vCenter. Most of the vulnerabilities are in Java, Tomcat and the kernel and have been known for some time. Some of them can be exploited to compromise a system, however, the advisory notes that flaws in the Service Console kernel and JRE can only be exploited when an attacker has access to the Service Console network. . Currently, updates have only been released for some of the affected products, such as ESX 4.0 and vCenter 4.0. According to VMware, security updates for the other products are pending completion . The link for this article located at H Security is no longer available. . VMware identifies 93 security flaws in multiple products; patches released for certain impacted applications.. VMware Vulnerabilities, Java Issues, Kernel Security, Software Exploits. . LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.