A new report released today by Fox-IT, part of NCC Group PLC, has detailed how about 2,000 Citrix NetScalers have been exploited by a threat actor to gain persistent access. Citrix NetScaler is an ...
Earlier this month another vulnerability was found in Citrix Systems Inc.’s NetScaler and NetGateway product lines. This time around, the Citrix Bleed exploit is a lot more dangerous and harder to ...
Citrix fixes three flaws in NetScaler ADC and NetScaler Gateway Among them is a critical-severity one used as a zero-day which allowed for RCE and DoS attacks Citrix has fixed three bugs in its ...
A critical vulnerability tracked as CVE-2023-4966 in Citrix NetScaler ADC/Gateway devices has been actively exploited as a zero-day since late August, security researchers announced. The security ...
Citrix’s file-based licensing setup will be replaced by its License Activation Service (LAS), which will become the only ...
Citrix warned admins today to secure all NetScaler ADC and Gateway appliances immediately against ongoing attacks exploiting the CVE-2023-4966 vulnerability. The company patched this critical ...
NetScaler last week said it could improve the performance of Oracle E-Business Suite applications by up to 52%, and announced it would join Oracle’s partner network. NetScaler based that claim on ...
LLMs and 0-days - what could possibly go wrong? Attackers on underground forums claimed they were using HexStrike AI, an open-source red-teaming tool, against Citrix NetScaler vulnerabilities within ...
Cybersecurity experts at Sophos X-Ops have uncovered a wave of attacks targeting unpatched Citrix NetScaler systems exposed to the internet. Describing the malicious campaign on X last Friday, the ...
A critical vulnerability allowing hackers to bypass multifactor authentication in network management devices made by Citrix has been actively exploited for more than a month, researchers said. The ...
Thousands of companies could be at risk from an actively exploited Citrix zero-day that hackers have already abused to target at least one critical infrastructure organization in the United States.
The US Cybersecurity and Infrastructure Security Agency (CISA) reported last week that attackers are actively exploiting a critical remote code execution vulnerability patched earlier this month in ...