Anton Gostev Profile
Anton Gostev

@gostev

Followers
4K
Following
4K
Media
131
Statuses
5K

Chief Product Officer at Veeam

๐•ญ๐–†๐–†๐–—, ๐•พ๐–ˆ๐–๐–œ๐–Š๐–Ž๐–Ÿ ๐Ÿ‡จ๐Ÿ‡ญ
Joined May 2008
Don't wanna be here? Send us removal request.
@gostev
Anton Gostev
1 month
Watch out -- a whole bunch of critical VM escape vulnerabilities to patch in VMware vSphere
support.broadcom.com
0
4
8
@gostev
Anton Gostev
3 months
Everyone: You can't predict the future. Me: My next employer will not use Concur.
4
0
21
@gostev
Anton Gostev
6 months
PSA: Where the term "to patch" came from
Tweet media one
0
0
15
@gostev
Anton Gostev
6 months
Multiple virtual machine escape vulnerabilities in all supported VMware ESXi versions have been disclosed, and are already exploited in the wild. VMSA-2025-0004 >
support.broadcom.com
1
10
22
@gostev
Anton Gostev
6 months
RT @McFaul: Trump, Vance & others either have forgotten or never knew that Zelensky signed a ceasefire agreement with Putin in 2019. Threeโ€ฆ.
0
24K
0
@gostev
Anton Gostev
6 months
R.I.P. @brad_jervis :`( it's hard to believe we will not meet you again this fall like in past many years, but you will be forever in our hearts and your endless enthusiasm will be forever remembered.
4
0
27
@gostev
Anton Gostev
7 months
Bah! Bypassing disk encryption on systems with automatic TPM2 unlock >
1
2
9
@gostev
Anton Gostev
9 months
RT @Veeam: Weโ€™re excited to welcome new several investors, including @tpg, & @neubergerberman, through a secondary offering that values Veeโ€ฆ.
0
2
0
@gostev
Anton Gostev
1 year
Keep rolling rolling rolling
0
0
3
@gostev
Anton Gostev
1 year
Critical SSH vulnerabilities like CVE-2024-6387 aka regreSSHion is the reason why I recommend disabling SSH Server on hardened backup repositories completely. Unauthenticated Remove Code Execution (RCE) now available to hackers on millions of Linux servers.
Tweet card summary image
blog.qualys.com
CVE-2024-6387 exploit in OpenSSH poses remote unauthenticated code execution risks. Find out which versions are vulnerable and how to protect your systems.
1
10
26
@gostev
Anton Gostev
1 year
ZERO CLICK vulnerability in Microsoft Outlook: simply viewing an email containing the malicious code triggers the exploit, compromising the user's system immediately through critical Remote Code Execution (RCE) vulnerability. Def something to patch ASAP!.
2
49
133
@gostev
Anton Gostev
1 year
RT @Falko_Banaszak: HOLY SMOKES ! ๐Ÿšจ๐Ÿšจ๐Ÿšจ. #Veeam Backup & Replication for #Linux is coming. Seems like @RickVanover and @gostev fulfilled on oโ€ฆ.
0
27
0
@gostev
Anton Gostev
1 year
To clarify, Veeam hardened repository deployed according to best practices (SSH Server disabled) are not vulnerable. Security & Compliance Analyzer wizard in the backup console will give you a warning if you have SSH enabled on your hardened repos.
0
3
9
@gostev
Anton Gostev
1 year
RT @Veeam: The Day 2 keynote at #VeeamON 2024 is all about innovation, featuring @gostev, John Jester, @lenovo's @kirkskaugen, @AWS's Paulโ€ฆ.
0
3
0
@gostev
Anton Gostev
1 year
Warning from our security team: CVE-2024-1086 in nf_tables in the Linux kernel is now being exploited in the wild. POC code is public and they see threat actors actively discussing the vulnerability on underground forums. Keep your Linux servers and hardened repositories patched!.
1
12
33
@gostev
Anton Gostev
1 year
Notably, on @MicrosoftEdge this configuration option is automatically active for โ€œEnhanced Security Modeโ€.
0
0
0
@gostev
Anton Gostev
1 year
It's 8th @googlechrome 0-day this year and apparently half of all Chrome 0-days exploited in the wild are JIT related. I'm hearing it is possible to just deactivate the JIT through both UI and command-line options. is this a good idea?.
1
0
5