⤷ Title: RedCurl Uses New QWCrypt Ransomware in Hypervisor Attacks
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Thu, 27 Mar 2025 16:41:28 +0000
════════════════════════
⌗ Tags: #Security #Cyber Attacks #Cyber Attack #Cyber Crime #Cybersecurity #Earth Kapre #Hypervisor #LOTL #QWCrypt #Ransomware #Red Wolf #RedCurl
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Thu, 27 Mar 2025 16:41:28 +0000
════════════════════════
⌗ Tags: #Security #Cyber Attacks #Cyber Attack #Cyber Crime #Cybersecurity #Earth Kapre #Hypervisor #LOTL #QWCrypt #Ransomware #Red Wolf #RedCurl
Hackread
RedCurl Uses New QWCrypt Ransomware in Hypervisor Attacks
Follow us on Bluesky, Twitter (X), Mastodon and Facebook at @Hackread
⤷ Title: Heracles: New Attack Exploits AMD SEV-SNP to Steal Data from Protected VMs
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 14 Aug 2025 07:43:28 +0000
════════════════════════
⌗ Tags: #Vulnerability #AMD SEV_SNP #confidential computing #cybersecurity #ETH Zurich #Hardware Security #Heracles #hypervisor #side_channel attack #Virtual Machines
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 14 Aug 2025 07:43:28 +0000
════════════════════════
⌗ Tags: #Vulnerability #AMD SEV_SNP #confidential computing #cybersecurity #ETH Zurich #Hardware Security #Heracles #hypervisor #side_channel attack #Virtual Machines
Penetration Testing Tools
Heracles: New Attack Exploits AMD SEV-SNP to Steal Data from Protected VMs
ETH Zurich researchers have developed "Heracles," an attack that bypasses AMD's SEV-SNP hardware protection to steal sensitive data from secure virtual machines.
⤷ Title: Google’s Android Hypervisor Achieves Highest Security Certification for Consumer Electronics
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 15 Aug 2025 04:32:30 +0000
════════════════════════
⌗ Tags: #Android #Google #Certification #google #hypervisor #pKVM #security #SESIP
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 15 Aug 2025 04:32:30 +0000
════════════════════════
⌗ Tags: #Android #Google #Certification #google #hypervisor #pKVM #security #SESIP
Penetration Testing Tools
Google’s Android Hypervisor Achieves Highest Security Certification for Consumer Electronics
Google's pKVM hypervisor, which powers Android's Virtualization Framework, has achieved SESIP Level 5 certification, the highest security tier for consumer electronics.
⤷ Title: RMPocalypse Flaw (CVE-2025-0033) Bypasses AMD SEV-SNP to Fully Compromise Encrypted VMs
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 14 Oct 2025 00:22:03 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #AMD #Confidential Computing #Hypervisor #privilege escalation #RMPocalypse #SEV_SNP #virtualization
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 14 Oct 2025 00:22:03 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #AMD #Confidential Computing #Hypervisor #privilege escalation #RMPocalypse #SEV_SNP #virtualization
Daily CyberSecurity
RMPocalypse Flaw (CVE-2025-0033) Bypasses AMD SEV-SNP to Fully Compromise Encrypted VMs
ETH Zurich exposed RMPocalypse, a deterministic flaw in AMD SEV-SNP that bypasses memory integrity during initialization, allowing a malicious hypervisor to compromise Confidential VMs (Zen 3/4/5) with 100% success.
⤷ Title: RMPocalypse Flaw (CVE-2025-0033) Bypasses AMD SEV-SNP
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 14 Oct 2025 04:00:29 +0000
════════════════════════
⌗ Tags: #Vulnerability #AMD #confidential computing #CVE_2025_0033 #hypervisor #RMPocalypse #SEV_SNP #Virtualization
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 14 Oct 2025 04:00:29 +0000
════════════════════════
⌗ Tags: #Vulnerability #AMD #confidential computing #CVE_2025_0033 #hypervisor #RMPocalypse #SEV_SNP #Virtualization
Penetration Testing Tools
RMPocalypse Flaw (CVE-2025-0033) Bypasses AMD SEV-SNP
ETH Zurich exposed RMPocalypse, a deterministic flaw in AMD SEV-SNP that bypasses memory integrity checks, allowing a malicious hypervisor to fully compromise encrypted cloud VMs.
⤷ Title: RMPocalypse Flaw (CVE-2025-0033) Bypasses AMD SEV-SNP
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 14 Oct 2025 04:00:29 +0000
════════════════════════
⌗ Tags: #Vulnerability #AMD #confidential computing #CVE_2025_0033 #hypervisor #RMPocalypse #SEV_SNP #Virtualization
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 14 Oct 2025 04:00:29 +0000
════════════════════════
⌗ Tags: #Vulnerability #AMD #confidential computing #CVE_2025_0033 #hypervisor #RMPocalypse #SEV_SNP #Virtualization
Penetration Testing Tools
RMPocalypse Flaw (CVE-2025-0033) Bypasses AMD SEV-SNP
ETH Zurich exposed RMPocalypse, a deterministic flaw in AMD SEV-SNP that bypasses memory integrity checks, allowing a malicious hypervisor to fully compromise encrypted cloud VMs.
⤷ Title: The AMX Lockdown: Critical KVM Bug Allows Guest VMs to Crash Linux Hosts
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 25 Dec 2025 03:11:17 +0000
════════════════════════
⌗ Tags: #Linux #Cloud Security #dos #FPU #Hypervisor #Intel AMX #kernel panic #KVM #Linux Kernel #Paolo Bonzini #red hat #virtualization #Xeon Scalable #XSAVE
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 25 Dec 2025 03:11:17 +0000
════════════════════════
⌗ Tags: #Linux #Cloud Security #dos #FPU #Hypervisor #Intel AMX #kernel panic #KVM #Linux Kernel #Paolo Bonzini #red hat #virtualization #Xeon Scalable #XSAVE
Daily CyberSecurity
The AMX Lockdown: Critical KVM Bug Allows Guest VMs to Crash Linux Hosts
An unpleasant flaw surfaced in Linux—one capable of causing serious headaches for server administrators, particularly in public cloud environments. The issue arises when a KVM guest virtual machin…
⤷ Title: TryHackMe: Hypervisor Internals
════════════════════════
𐀪 Author: Pavneet_Singh_
════════════════════════
ⴵ Time: Tue, 30 Dec 2025 07:42:52 GMT
════════════════════════
⌗ Tags: #tryhackme #medium #tryhackme_walkthrough #thm #hypervisor_internals
════════════════════════
𐀪 Author: Pavneet_Singh_
════════════════════════
ⴵ Time: Tue, 30 Dec 2025 07:42:52 GMT
════════════════════════
⌗ Tags: #tryhackme #medium #tryhackme_walkthrough #thm #hypervisor_internals
Medium
TryHackMe: Hypervisor Internals
Room Link- https://tryhackme.com/room/hypervisorinternals
⤷ Title: Hackers Exploiting VMware ESXi for gaining RCE
════════════════════════
𐀪 Author: Akchhat
════════════════════════
ⴵ Time: Sun, 11 Jan 2026 13:46:11 GMT
════════════════════════
⌗ Tags: #penetration_testing #hypervisor_security #active_directory #security_research #vmware_esxi
════════════════════════
𐀪 Author: Akchhat
════════════════════════
ⴵ Time: Sun, 11 Jan 2026 13:46:11 GMT
════════════════════════
⌗ Tags: #penetration_testing #hypervisor_security #active_directory #security_research #vmware_esxi
Medium
Hackers Exploiting VMware ESXi for gaining RCE
Hi Everyone and welcome to my first Blog post which I am writing as I discovered a Topic which hasn’t been discussed in the wild. I’m…
⤷ Title: The Great VM Escape: MAESTRO Toolkit Breaks VMware Isolation
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 13 Jan 2026 04:07:16 +0000
════════════════════════
⌗ Tags: #Vulnerability #BYOVD #CVE_2025_22224 #Cyber Security 2026 #ESXi #Huntress #hypervisor #MAESTRO #SonicWall #VM Escape #vmware #VSOCKpuppet #zero_day
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 13 Jan 2026 04:07:16 +0000
════════════════════════
⌗ Tags: #Vulnerability #BYOVD #CVE_2025_22224 #Cyber Security 2026 #ESXi #Huntress #hypervisor #MAESTRO #SonicWall #VM Escape #vmware #VSOCKpuppet #zero_day
Penetration Testing Tools
The Great VM Escape: MAESTRO Toolkit Breaks VMware Isolation
Virtual machines are often perceived as impenetrable bastions for risk assessment, operating under the assumption that the host
⤷ Title: Ghosts in the Hypervisor: Mandiant Exposes the 400-Day vSphere Takeover
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 09 Apr 2026 06:39:11 +0000
════════════════════════
⌗ Tags: #Malware #BRICKSTEAM #BRICKSTORM #ESXi #Hypervisor Security #infosec #Mandiant #Photon OS #threat intelligence #VCSA #virtualization #VMware Security #vSphere
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 09 Apr 2026 06:39:11 +0000
════════════════════════
⌗ Tags: #Malware #BRICKSTEAM #BRICKSTORM #ESXi #Hypervisor Security #infosec #Mandiant #Photon OS #threat intelligence #VCSA #virtualization #VMware Security #vSphere
Daily CyberSecurity
Ghosts in the Hypervisor: Mandiant Exposes the 400-Day vSphere Takeover
Mandiant uncovers BRICKSTORM, a threat actor hiding in VMware vSphere for 393 days. Learn how to close the visibility gap and harden your ESXi infrastructure.