Hackers are exploiting a vulnerability in VMware ESXi software, identified as CVE-2024-37085, to encrypt mass virtual machines, leading to a surge in ransomware attacks and large-scale data exfiltration. Major enterprise security company, Broadcom, has released a fix for this vulnerability and provided general mitigation advice. Notable ransomware groups, including APT Inc and Play Ransomware, have previously targeted ESXi environments in their attacks.

Akira Ransomware Exploits SonicWall VPNs in Likely Zero-Day Attack on Fully-Patched Devices
SonicWall SSL VPN devices have become the target of Akira ransomware attacks as part of a newfound surge in activity observed in late July 2025.