VMware Flaws That Earned Hackers $340,000 at Pwn2Own Patched
Score: 66/100
4 articles
100.0% Similarity
1 day ago
Activity Timeline
VMware ESXi and Workstation Vulnerabilities Allow ...
GB Hackers
Jul 16
05:18
VMware ESXi and Workstation Vulnerabilities Let At...
Cybersecurity News
Jul 16
06:15
CC-4681 - Broadcom Releases Security Updates for V...
NHS Digital Cyber Alerts
Jul 16
09:43
VMware Flaws That Earned Hackers $340,000 at Pwn2O...
SecurityWeek
Primary Article
Jul 17
09:22
Primary Article
SecurityWeek 14 hours ago
Broadcom informed customers this week that several VMware product vulnerabilities disclosed earlier this year at the Pwn2Own hacking competition have been patched.Participants earned more than $1 million at thePwn2Own Berlin 2025competition organized by Trend Micro’s Zero Day Initiative (ZDI). More than $340,000 was paid out for exploits targeting VMware products.The STARLabs SG team earned $150,000 for exploiting a single integer overflow bug to hack VMware ESXi.According to Broadcom’s advisory, this critical bug impacts the VMXNET3 virtual network adapter and it can allow an attacker with local admin privileges on a VM that uses the adapter to execute arbitrary code on the host. The security hole is tracked as CVE-2025-41236.The REverse Tactics team earned $112,500 for an ESXi exploit involving two bugs. The amount is lower than the one earned by STARLabs SG because one of the flaws was known to Broadcom.REverse Tactics has been credited by Broadcom for two CVEs: CVE-2025-41237, a cr...
Lorem ipsum dolor sit amet, consectetur adipiscing elit. Sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam, quis nostrud exercitation ullamco laboris nisi ut aliquip ex ea commodo consequat.
Unlock Cluster AI
Join ThreatCluster Intelligence to access AI-generated executive, technical, and remediation briefs.
Broadcom Releases Security Updates for VMware ESXi, Workstation, Fusion, and Tools
Critical advisory addresses four security vulnerabilities that could result in code execution or information disclosu...
Multiple severe vulnerabilities have been addressed affectingVMware ESXi, Workstation, Fusion, and Tools that could allow attackers to execute malicious code on host systems.
The vulnerabilities, iden...
VMware ESXi and Workstation Vulnerabilities Allow Host-Level Code Execution
Broadcom disclosed four critical vulnerabilities in VMware’s virtualization suite on July 15, 2025, enabling attackers to es...
Save to Folder
Choose a folder to save this cluster:
We use cookies
We use cookies and similar technologies to enhance your experience, analyse site usage, and assist in our marketing efforts.
Cookie Settings
Essential Cookies
Required for the website to function. Cannot be disabled.
Session management and authentication
Security and fraud prevention
Cookie consent preferences
Analytics Cookies
Help us understand how visitors interact with our website.