• About
  • Advertise
  • Privacy & Policy
  • Contact
Vidianews
  • Home
  • Entertainment
    • All
    • Gaming
    • Movie
    a-year-later,-it’s-still-fun-to-suck-elden-ring:-nightreign

    A Year Later, It’s Still Fun To Suck Elden Ring: Nightreign

    taylor-swift-and-travis-kelce’s-secret-pre-wedding-event-leaked

    Taylor Swift and Travis Kelce’s secret pre-wedding event leaked

    whitney-houston’s-hairstylist-slams-oprah,-says-she’s-distorting-the-truth-about-fall-2009

    Whitney Houston’s Hairstylist Slams Oprah, Says She’s Distorting the Truth About Fall 2009

    justin-bieber-makes-surprise-appearance-at-nhl-draft-to-announce-top-pick

    Justin Bieber makes surprise appearance at NHL draft to announce top pick

    north-carolina-governor-condemns-confederate-flag-at-great-state-fair

    North Carolina Governor Condemns Confederate Flag at Great State Fair

    eminem’s-ex-wife-kim-scott-faces-new-legal-troubles-after-missing-drunk-driving-hearing

    Eminem’s Ex-Wife Kim Scott Faces New Legal Troubles After Missing Drunk Driving Hearing

  • Sports
  • Tech
    • All
    • Gadget
    • Startup
    a-touchscreen-box,-dolby-atmos-and-a-posture-test:-i-spent-a-month-with-cleer

    A touchscreen box, Dolby Atmos and a posture test: I spent a month with Cleer

    how-to-watch-life,-larry-and-the-pursuit-of-unhappiness-–-stream-larry-david’s-sketch-series-from-anywhere

    How to watch Life, Larry and the Pursuit of Unhappiness – stream Larry David’s sketch series from anywhere

    answers-to-today’s-nyt-mini-crossword-for-june-27-–-cnet

    Answers to today’s NYT mini crossword for June 27 – CNET

    this-is-why-your-smart-watch-is-giving-you-anxiety-and-what-you-can-do-about-it

    This is why your smart watch is giving you anxiety and what you can do about it

    wired’s-best-deals-under-$100-to-grab-before-prime-day-ends

    WIRED’s Best Deals Under $100 to Grab Before Prime Day Ends

    i-was

    I was

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
  • Lifestyle
    • All
    • Faith
    • Health
    • Travel
    victoria-golf-resort-&-spa,-managed-by-accor,-vilamoura,-portugal

    Victoria Golf Resort & Spa, managed by Accor, Vilamoura, Portugal

    why-‘always-open’-is-the-wrong-way-to-measure-the-hospital-crisis-–-medcity-news

    Why ‘always open’ is the wrong way to measure the hospital crisis – MedCity News

    9-signs-that-god-is-opening-a-door-for-you

    9 signs that God is opening a door for you

    hosting-a-pizza-party-will-be-the-most-fun-you’ll-have-all-summer:-here’s-exactly-how-to-do-it

    Hosting a pizza party will be the most fun you’ll have all summer: here’s exactly how to do it

    does-apple-cider-vinegar-go-bad?-everything-you-need-to-know-|-live-better

    Does Apple Cider Vinegar Go Bad? Everything You Need To Know | Live Better

    new-fda-deal-keeps-gilead-drug-competitive-with-astrazeneca-and-daiichi-in-breast-cancer-treatment-–-medcity-news

    New FDA deal keeps Gilead drug competitive with AstraZeneca and Daiichi in breast cancer treatment – MedCity News

    Trending Tags

    • Golden Globes
    • Game of Thrones
    • MotoGP 2017
    • eSports
    • Fashion Week
  • News
    • All
    • Business
    • Science
    dell-shareholders-approve-legal-move-from-delaware-to-texas

    Dell Shareholders Approve Legal Move From Delaware To Texas

    2026 World Cup: Seattle prepares for Iran-Egypt match amid ‘Pride Match’ controversy

    binance-will-stop-providing-services-to-european-customers-after-failing-to-obtain-a-license:-financial-times

    Binance will stop providing services to European customers after failing to obtain a license: Financial Times

    alfaro-after-paraguay-draw:-‘the-feeling-i-have-is-just-a-taste-of-something’

    Alfaro after Paraguay draw: ‘The feeling I have is just a taste of something’

    asian-stock-markets-fall-as-tech-stocks-slump

    Asian stock markets fall as tech stocks slump

    un-suspends-strait-of-hormuz-evacuation-after-cargo-ship-attack

    UN suspends Strait of Hormuz evacuation after cargo ship attack

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Business
  • Politics
  • World
  • Review

    Facebook’s Dream Hire, Former British Deputy Prime Minister Nick Clegg, Gets Off to a Bad Start

    The iPhone Ultra is expected to launch in a white color; May feature vapor chamber cooling

    Elon Musk scaled back his dreams of ending climate change

    Apple’s Ray-Ban Meta Rivaling smart glasses reportedly delayed until next year; Vision Air will launch in 2029

    US-China trade war turns into tech war

    Oura Ring 4 Review: An Always-On Solution for Effective Health Monitoring

No Result
View All Result
  • Home
  • Entertainment
    • All
    • Gaming
    • Movie
    a-year-later,-it’s-still-fun-to-suck-elden-ring:-nightreign

    A Year Later, It’s Still Fun To Suck Elden Ring: Nightreign

    taylor-swift-and-travis-kelce’s-secret-pre-wedding-event-leaked

    Taylor Swift and Travis Kelce’s secret pre-wedding event leaked

    whitney-houston’s-hairstylist-slams-oprah,-says-she’s-distorting-the-truth-about-fall-2009

    Whitney Houston’s Hairstylist Slams Oprah, Says She’s Distorting the Truth About Fall 2009

    justin-bieber-makes-surprise-appearance-at-nhl-draft-to-announce-top-pick

    Justin Bieber makes surprise appearance at NHL draft to announce top pick

    north-carolina-governor-condemns-confederate-flag-at-great-state-fair

    North Carolina Governor Condemns Confederate Flag at Great State Fair

    eminem’s-ex-wife-kim-scott-faces-new-legal-troubles-after-missing-drunk-driving-hearing

    Eminem’s Ex-Wife Kim Scott Faces New Legal Troubles After Missing Drunk Driving Hearing

  • Sports
  • Tech
    • All
    • Gadget
    • Startup
    a-touchscreen-box,-dolby-atmos-and-a-posture-test:-i-spent-a-month-with-cleer

    A touchscreen box, Dolby Atmos and a posture test: I spent a month with Cleer

    how-to-watch-life,-larry-and-the-pursuit-of-unhappiness-–-stream-larry-david’s-sketch-series-from-anywhere

    How to watch Life, Larry and the Pursuit of Unhappiness – stream Larry David’s sketch series from anywhere

    answers-to-today’s-nyt-mini-crossword-for-june-27-–-cnet

    Answers to today’s NYT mini crossword for June 27 – CNET

    this-is-why-your-smart-watch-is-giving-you-anxiety-and-what-you-can-do-about-it

    This is why your smart watch is giving you anxiety and what you can do about it

    wired’s-best-deals-under-$100-to-grab-before-prime-day-ends

    WIRED’s Best Deals Under $100 to Grab Before Prime Day Ends

    i-was

    I was

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
  • Lifestyle
    • All
    • Faith
    • Health
    • Travel
    victoria-golf-resort-&-spa,-managed-by-accor,-vilamoura,-portugal

    Victoria Golf Resort & Spa, managed by Accor, Vilamoura, Portugal

    why-‘always-open’-is-the-wrong-way-to-measure-the-hospital-crisis-–-medcity-news

    Why ‘always open’ is the wrong way to measure the hospital crisis – MedCity News

    9-signs-that-god-is-opening-a-door-for-you

    9 signs that God is opening a door for you

    hosting-a-pizza-party-will-be-the-most-fun-you’ll-have-all-summer:-here’s-exactly-how-to-do-it

    Hosting a pizza party will be the most fun you’ll have all summer: here’s exactly how to do it

    does-apple-cider-vinegar-go-bad?-everything-you-need-to-know-|-live-better

    Does Apple Cider Vinegar Go Bad? Everything You Need To Know | Live Better

    new-fda-deal-keeps-gilead-drug-competitive-with-astrazeneca-and-daiichi-in-breast-cancer-treatment-–-medcity-news

    New FDA deal keeps Gilead drug competitive with AstraZeneca and Daiichi in breast cancer treatment – MedCity News

    Trending Tags

    • Golden Globes
    • Game of Thrones
    • MotoGP 2017
    • eSports
    • Fashion Week
  • News
    • All
    • Business
    • Science
    dell-shareholders-approve-legal-move-from-delaware-to-texas

    Dell Shareholders Approve Legal Move From Delaware To Texas

    2026 World Cup: Seattle prepares for Iran-Egypt match amid ‘Pride Match’ controversy

    binance-will-stop-providing-services-to-european-customers-after-failing-to-obtain-a-license:-financial-times

    Binance will stop providing services to European customers after failing to obtain a license: Financial Times

    alfaro-after-paraguay-draw:-‘the-feeling-i-have-is-just-a-taste-of-something’

    Alfaro after Paraguay draw: ‘The feeling I have is just a taste of something’

    asian-stock-markets-fall-as-tech-stocks-slump

    Asian stock markets fall as tech stocks slump

    un-suspends-strait-of-hormuz-evacuation-after-cargo-ship-attack

    UN suspends Strait of Hormuz evacuation after cargo ship attack

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Business
  • Politics
  • World
  • Review

    Facebook’s Dream Hire, Former British Deputy Prime Minister Nick Clegg, Gets Off to a Bad Start

    The iPhone Ultra is expected to launch in a white color; May feature vapor chamber cooling

    Elon Musk scaled back his dreams of ending climate change

    Apple’s Ray-Ban Meta Rivaling smart glasses reportedly delayed until next year; Vision Air will launch in 2029

    US-China trade war turns into tech war

    Oura Ring 4 Review: An Always-On Solution for Effective Health Monitoring

No Result
View All Result
Vidianews
No Result
View All Result
Home Tech

Worrying Zero Day Flaw at Dell Reportedly Unpatched for Years

Ivan Mehta by Ivan Mehta
February 18, 2026
in Tech
0
worrying-zero-day-flaw-at-dell-reportedly-unpatched-for-years

Worrying Zero Day Flaw at Dell Reportedly Unpatched for Years

0
SHARES
0
VIEWS
Share on FacebookShare on Twitter
A group of 7 hackers, 6 slightly blurred in the background and one in the foreground, all dressed in black with hoods pulled up over their heads. You can't see their faces. The hacker in the foreground is sitting with an open laptop in front of him. The background, behind the hackers, is a Chinese flag
(Image credit: Getty Images)

  • Dell fixed a critical flaw in RecoverPoint for Virtual Machines caused by hardcoded credentials
  • Operated as a zero-day since mid-2024 by the Chinese state-sponsored UNC6201 group
  • The attackers deployed a new Grimbolt backdoor and used a new “ghost network cards” technique for stealth and lateral movement.

Chinese state-sponsored threat actors have been exploiting a rather embarrassing vulnerability in a Dell product for nearly two years, experts have claimed.

In a security advisory, Dell said its RecoverPoint for Virtual Machines contained a hardcoded credential flaw.

RecoverPoint for Virtual Machines (RP4VM) is a data protection and disaster recovery solution designed for virtualized environments, primarily VMware vSphere and Microsoft Hyper-V. When building it, a developer left login information in the code, presumably so they could quickly log in and test the product.

Limited active exploitation

Usually, developers would go through the code before shipping the product and remove all traces of the hardcoded credentials. However, they are sometimes forgotten or left unattended, leaving a gaping hole for cybercriminals to exploit.

Now, Dell claims that all versions prior to 6.0.3.1 HF1 contained hardcoded credentials – a critical vulnerability because “an unauthenticated, remote attacker with knowledge of hardcoded credentials could potentially exploit this vulnerability leading to unauthorized access to the underlying operating system and root-level persistence.”

To make matters worse, security researchers from Google and Mandiant warned Dell against “limited active exploitation” of the flaw. Both companies say the bug had been exploited, as a zero-day, since mid-2024, meaning they had been using it for more than a year and a half.

The group apparently exploiting this bug is identified as UNC6201. They are not a widely recognized group, like APT41 or Silk Typhoon, but they are just as dangerous. In fact, researchers said the group deployed several malware payloads, including a brand new backdoor called Grimbolt, built in C# using a new compilation technique that made reverse engineering faster and more difficult than its previous tools.

Sign up for the TechRadar Pro newsletter to get all the top news, opinions, features and tips your business needs to succeed!

The researchers also said that UNC6201 used new lateral movement and stealth techniques:

“UNC6201 uses temporary virtual network ports (aka “ghost NICs”) to transition compromised virtual machines to internal or SaaS environments, a new technique that Mandiant has not previously observed in its investigations,” Mandiant said. BeepComputer. “In line with the previous BRICKSTORM campaign, UNC6201 continues to target devices that typically lack traditional Endpoint Detection and Response (EDR) agents to remain undetected for extended periods of time. »

Via BeepComputer


Best Antivirus Software

Follow TechRadar on Google News And add us as your favorite source to get our news, reviews and expert opinions in your feeds. Make sure to click the Follow button!

And of course you can too follow TechRadar on TikTok for news, reviews, unboxings in video form and receive regular updates from us on WhatsApp Also.

Sead is a seasoned freelance journalist based in Sarajevo, Bosnia and Herzegovina. He writes about IT (cloud, IoT, 5G, VPN) and cybersecurity (ransomware, data breaches, laws and regulations). During his career, which spans more than a decade, he has written for numerous media outlets, including Al Jazeera Balkans. He has also hosted several modules on content writing for Represent Communications.

Related
Ivan Mehta

Ivan Mehta

Stay Connected

  • 99 Subscribers
  • Trending
  • Comments
  • Latest
european-markets-in-mixed-territory-after-a-positive-start

European markets in mixed territory after a positive start

January 26, 2026
how-to-remove-blood-from-clothes:-what-actually-works-|-live-better

How To Remove Blood From Clothes: What Actually Works | Live Better

April 17, 2026
12-sweet-feminine-aesthetic-outfits-for-the-summer-season

12 Sweet Feminine Aesthetic Outfits for the Summer Season

March 13, 2026
how-to-remove-grease-from-clothes:-4-tested-methods-|-live-better

How To Remove Grease From Clothes: 4 Tested Methods | Live Better

April 18, 2026
hansmaker-presents-the-d1-ultra:-a-dual-laser-engraver-designed-for-each-material-–-techenger

Hansmaker presents the D1 Ultra: a dual laser engraver designed for each material – Techenger

0
nascar-driver-denny-hamlin-breaks-silence-after-father-dies-in-house-fire

NASCAR driver Denny Hamlin breaks silence after father dies in house fire

0
fivio-foreign-checks-himself-into-a-$10,000-rehab-center-to-get-his-mind-straight

Fivio Foreign checks himself into a $10,000 rehab center to get his mind straight

0
david-beckham-leaves-brooklyn-for-his-2025-instagram-tribute-amid-family-feud

David Beckham leaves Brooklyn for his 2025 Instagram tribute amid family feud

0
a-year-later,-it’s-still-fun-to-suck-elden-ring:-nightreign

A Year Later, It’s Still Fun To Suck Elden Ring: Nightreign

June 27, 2026
taylor-swift-and-travis-kelce’s-secret-pre-wedding-event-leaked

Taylor Swift and Travis Kelce’s secret pre-wedding event leaked

June 27, 2026
whitney-houston’s-hairstylist-slams-oprah,-says-she’s-distorting-the-truth-about-fall-2009

Whitney Houston’s Hairstylist Slams Oprah, Says She’s Distorting the Truth About Fall 2009

June 27, 2026
a-touchscreen-box,-dolby-atmos-and-a-posture-test:-i-spent-a-month-with-cleer

A touchscreen box, Dolby Atmos and a posture test: I spent a month with Cleer

June 27, 2026

Recent News

a-year-later,-it’s-still-fun-to-suck-elden-ring:-nightreign

A Year Later, It’s Still Fun To Suck Elden Ring: Nightreign

June 27, 2026
taylor-swift-and-travis-kelce’s-secret-pre-wedding-event-leaked

Taylor Swift and Travis Kelce’s secret pre-wedding event leaked

June 27, 2026
whitney-houston’s-hairstylist-slams-oprah,-says-she’s-distorting-the-truth-about-fall-2009

Whitney Houston’s Hairstylist Slams Oprah, Says She’s Distorting the Truth About Fall 2009

June 27, 2026
a-touchscreen-box,-dolby-atmos-and-a-posture-test:-i-spent-a-month-with-cleer

A touchscreen box, Dolby Atmos and a posture test: I spent a month with Cleer

June 27, 2026
Vidianews

Trusted news coverage delivering accurate reporting, breaking headlines, and insightful analysis on global events, business, politics, and tech.

Follow Us

Browse by Category

  • Business
  • Entertainment
  • Faith
  • Gadget
  • Gaming
  • General
  • Health
  • Lifestyle
  • Movie
  • News
  • Politics
  • Review
  • Science
  • Sports
  • Startup
  • Tech
  • Travel
  • World

Recent News

a-year-later,-it’s-still-fun-to-suck-elden-ring:-nightreign

A Year Later, It’s Still Fun To Suck Elden Ring: Nightreign

June 27, 2026
taylor-swift-and-travis-kelce’s-secret-pre-wedding-event-leaked

Taylor Swift and Travis Kelce’s secret pre-wedding event leaked

June 27, 2026
  • About
  • Advertise
  • Privacy & Policy
  • Contact

© © Copyrights 2026 Vidianews. All Rights Reserved. Designed by Vidianews

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In

Add New Playlist

No Result
View All Result

© © Copyrights 2026 Vidianews. All Rights Reserved. Designed by Vidianews

Are you sure want to unlock this post?
Unlock left : 0
Are you sure want to cancel subscription?
Go to mobile version