Chinese-speaking threat actors conducted attacks using a VMware ESXi exploit toolkit that leveraged three zero-day vulnerabilities, identified as CVE-2025-22224, CVE-2025-22225, and CVE-2025-22226. The initial access…
1 article · Updated January 9, 2026
Recent Intelligence Reports
Trio of VMware ESXi zero-days chained long before disclosure— Scworld · January 9, 2026