Hi,
how can you be sure that there is a "unauthenticated RCE" touching PVE7/8 systems ?
All the systems mentionned was affected by :
How can you be sure that the attacker don't get access to the host within a VM or CT ?
so it's a virtualizor issue, not a proxmox issue
Which cannot be applied to proxmox updates, since there is cryptographic verification unless the attacker gains access to proxmox signing infrastructure.
ATM no one that reported being touched by the ransomware has given any clue or log to appreciate the method... so for now the "obvious" reason is simply EOL systems exposed to the internet, yes it's a shortcut but without traces/logs there nothing more to appreciate.
Well not really, IF "hetzner was hacked" like you say, this changes nothing to their customers who used a bare metal server, the server still runs and the hacker should have no access to the host.
Best regards,