Two ransomware strains target VMware’s ESXI hypervisor through stolen vCenter creds

This is why best practice is to use an admin VM/device to do your admin stuff, not your "normal" daily driver device.

2nd, you don't have an email account configured on the admin device and your admin user doesn't have an email license attached to it either.

Its *REALLY* not that hard to do this, day in, day out, yet I'm sure someone will be along shortly to bemoan the "hassle" or needing to sign into another session to "do admin" to something.

