Documents
0
Active Sources
0
CVEs
0
IOCs
0
vSphere and BRICKSTORM Malware: A Defender's Guide
Mandiant Research 02 Apr 2026 SEV 7/10
vulnerability iot_ot_security Conti
vSphere and BRICKSTORM Malware: A Defender's Guide | Google Cloud Blog Threat Intelligence vSphere and BRICKSTORM Malware: A Defender's Guide April 2, 2026 Mandiant Mandiant Services Stop attacks, reduce risk, and advance your security. Contact Mandiant Written by: Stuart Carrera Introduction Building on recent BRICKSTORM research from Google Threat Intelligence Group (GTIG), this post explores the evolving threats facing virtualized environments. These operations directly target the VMware vSphere ecosystem, specifically the vCenter Server Appliance (VCSA) and ESXi hypervisors.
Proactive Preparation and Hardening Against Destructive Attacks: 2026 Edition
Mandiant Research 06 Mar 2026 SEV 6/10
identity_threat vulnerability Conti Play
Proactive Preparation and Hardening Against Destructive Attacks: 2026 Edition | Google Cloud Blog Threat Intelligence Proactive Preparation and Hardening Against Destructive Attacks: 2026 Edition March 6, 2026 Mandiant Mandiant Services Stop attacks, reduce risk, and advance your security. Contact Mandiant Written by: Matthew McWhirt, Bhavesh Dhake, Emilio Oropeza, Gautam Krishnan, Stuart Carrera, Greg Blaum, Michael Rudden UPDATE (March 13): Added guidance around abuse or misuse of endpoint / MDM platforms . Background Threat actors leverage destructive malware to destroy data, eliminate evidence of malicious activity, or manipulate systems in a way that renders them inoperable.