PortsuppeApp
SucheQuellenÜberDE/EN

From BRICKSTORM to GRIMBOLT: UNC6201 Exploiting a Dell RecoverPoint for Virtual Machines Zero-Day

Mandiant Blog·vor 99 d·Reputabel

Written by: Peter Ukhanov, Daniel Sislo, Nick Harbour, John Scarbrough, Fernando Tomlinson, Jr., Rich Reece Introduction Mandiant and Google Threat Intelligence Group (GTIG) have identified the zero-day exploitation of a high-risk vulnerability in Dell RecoverPoint for Virtual Machines, tracked as CVE-2026-22769, with a CVSSv3.1 score of 10.0. Analysis of incident response engagements revealed that UNC6201, a suspected PRC-nexus threat cluster, has exploited this flaw since at least mid-2024 to move laterally, maintain persistent access, and deploy malware including SLAYSTYLE, BRICKSTORM, and

Kategorien cybersecurity · government-security · unknown-it-category-15
Originalquelle / Advisory
Veröffentlicht
17.2.2026, 14:00:00
Abgerufen
27.5.2026, 04:13:32
Trust
reputable · 80/100
Sprache
en