Chinese Hackers Exploit ESXi Zero-Days via Hacked SonicWall VPN

Chinese Hackers Exploit ESXi Zero-Days via Hacked SonicWall VPN

First seen 9 Jan 2026, 20:34 UTC Securityaffairs.Co 0% similarity 19.2

Article Content

Browse articles
ThreatCluster

Chinese-speaking hackers exploited vulnerabilities in VMware ESXi by using a compromised SonicWall VPN. The attackers deployed a sophisticated toolkit that included a VM escape exploit, which appears to have been developed over a year before its public disclosure. This incident highlights the ongoing threat posed by advanced persistent threats targeting virtualization technologies.

ThreatCluster AI How this analysis works

Community

Browse all →

Tracked Entities in This Story