Bleepingcomputer
CISA Alerts on Chinese BrickStorm Malware Targeting VMware Servers
First seen 4 Dec 2025, 21:46 UTC
•

•33.3
Export
Article Content
Browse articles
CISA, in collaboration with the NSA and Canada's Cyber Security Centre, has issued a warning about Chinese hackers using BrickStorm malware to backdoor VMware vSphere servers. The attacks primarily affect government and IT sectors, allowing attackers to access the vCenter management console, steal VM snapshots, and create rogue virtual machines.
Ask AI about this cluster
Answers cite the sources they use
Analyzing cluster data...
Referenced clusters
Something went wrong. Please try again.
More articles in this cluster
Continue Reading
VerdantBamboo's 18-Month Cyber Campaign Targets Managed Service Providers
Evolution of Chinese-Nexus Cyber Operations: Strategic Long-Term Threats
Google Reports 90 Exploited Zero-Day Vulnerabilities in 2025
Exploitation of Critical VMware vCenter Server Bug CVE-2024-37079
China's Brickstorm Malware Compromises US Critical Networks
China Bans U.S. and Israeli Cybersecurity Software Amid National Security Concerns