WaterISAC Navigation
  • About
  • Report Incident
  • Contact Us
  • Become a Member
  • NRWA Signup
  • WaterISAC Champions
  • About
  • Report Incident
  • Contact Us
  • Become a Member
  • NRWA Signup
  • WaterISAC Champions
Home Action Recommended: Widespread Ransomware Attacks Targeting Unpatched VMware ESXi Servers
Become a Member

Log in

  • Upcoming Events
  • Resource Center
  • Tools
  • Webcasts
  • Contaminant Databases
  • Community Partners
  • About
  • Log in

  • My Account

  • Logout

  • Report Incident
  • Contact Us
  • NRWA Signup
  • WaterISAC Champions
More Resources

Action Recommended: Widespread Ransomware Attacks Targeting Unpatched VMware ESXi Servers

Author: Alec Davison

Created: Tuesday, February 7, 2023 - 21:07

Categories:

On Saturday morning, WaterISAC distributed an advisory via email to members regarding widespread reporting that attackers were actively targeting unpatched VMware ESXi servers with a two-year-old remote code execution vulnerability (CVE-2021-21974) to deploy ransomware. If your utility has any unpatched/unprotected VMware ESXi servers online, system administrators are encouraged to address promptly – patch/upgrade, disable exposed ports, isolate, or apply other compensating controls as necessary.

Full Article

Become a Member
FAQs
About
Report Incident
Traffic Light Protocol (TLP)

Terms & Conditions
Privacy Policy
AI Policy
Contact Us

LinkedIn

1250 I Street NW, Suite 350
Washington, DC 20005
1-866-H2O-ISAC (1-866-426-4722)
© 2026 WaterISAC. All Rights Reserved.

Toggle the Widgetbar