watchTowr says two unpatched NetScaler RCE flaws are being exploited and Citrix has published no fix.
Three exploited networking flaws now carry a three-day federal patch deadline.
Citrix fixed a CVSS 9.3 authentication bypass in NetScaler ADC and Gateway that attackers are expected to exploit quickly.
Attackers are exploiting a Citrix NetScaler memory disclosure flaw to steal active session tokens and deploy ransomware in under an…
Anubis ransomware affiliates exploit Citrix Bleed 2 and VPN credentials, using legitimate RMM tools to persist while The Gentlemen and…