#2
The Hacker News
general
February 18, 2026 at 13:32 UTC
Dell RecoverPoint for VMs Zero-Day CVE-2026-22769 Exploited Since Mid-2024
By [email protected] (The Hacker News)
AI Summary
China-nexus threat group UNC6201 exploited CVE-2026-22769, a maximum severity (CVSS 10.0) zero-day in Dell RecoverPoint for VMs involving hard-coded credentials, since mid-2024. Google Mandiant and GTIG report the vulnerability went undetected for approximately 18 months before discovery. This highlights the persistence of advanced persistent threat actors and the critical risk of hard-coded credentials in enterprise backup solutions.
Relevance score: 97.0/100
Sponsored
Protect Your Business
Expert cybersecurity solutions to safeguard your organization from evolving threats.
Get Protected →