VMware Horizon servers were targeted by NightSky Ransomware Group through the Apache Log4J Shell vulnerability.
Microsoft issued a warning to fix the Log4Shell vulnerability on their VMware Horizon servers as quickly as possible.
TPRM report: https://scoringcyber.rankiteo.com/company/vmwarehorizon
"id": "vmw1659222",
"linkid": "vmwarehorizon",
"type": "Ransomware",
"date": "01/2022",
"severity": "85",
"impact": "5",
"explanation": "Attack threatening the organization's existence"
{'affected_entities': [{'industry': 'Technology',
'name': 'VMware',
'type': 'Organization'}],
'attack_vector': 'Apache Log4J Shell vulnerability',
'description': 'VMware Horizon servers were targeted by NightSky Ransomware '
'Group through the Apache Log4J Shell vulnerability.',
'impact': {'systems_affected': ['VMware Horizon servers']},
'ransomware': {'ransomware_strain': 'NightSky'},
'references': [{'source': 'Microsoft'}],
'threat_actor': 'NightSky Ransomware Group',
'title': 'VMware Horizon Servers Targeted by NightSky Ransomware Group',
'type': 'Ransomware',
'vulnerability_exploited': 'Log4Shell'}