Vietnam Newsroom & Threat Intelligence
Clear sources · Careful assessments
NOTEDo not attribute a ransomware family from a file extension or a single ransom note.Vietnam time · UTC+7

Exposure Watch

Compare vulnerabilities and exposed services against actual assets, versions and configurations.

CVE · Reference material

Microsoft reported exploitation in 2024. This is not a new 2026 CVE and does not confirm that a reader's system is affected.

Read the analysis and vendor sources
CategoryReview questionActual observations
Exposed servicesWhich services actually need Internet access?No measurement data
RDPAre access paths, MFA and source restrictions controlled?No measurement data
VPN / FirewallHave versions, configurations and administrator accounts been reviewed?No measurement data
NASHow are management interfaces, applications and data permissions protected?No measurement data
ESXi / Hyper-VWho can administer hosts and change configuration?No measurement data
SQL ServerIs the service exposed externally, and are account privileges limited?No measurement data
Backup infrastructureAre backup permissions and environments separated, and have restores been tested?No measurement data

This is a review checklist, not the result of scanning an organization's infrastructure.

Microsoft Threat Intelligence — CVE-2024-3708529/07/2024 · Analysis of ESXi exploitation observed by Microsoft.
Broadcom — VMSA-2024-00132024 · Vendor advisory; check affected versions and mitigations.

Each source's scope and date are recorded separately when available. A citation does not independently verify every assessment.