Citrix has released critical patches addressing multiple zero-day vulnerabilities in its NetScaler ADC and Gateway products, which have been actively exploited by threat actors. These vulnerabilities, including CVE-2023-3519 and CVE-2023-28252, allow attackers to execute arbitrary code and bypass authentication, posing severe risks to enterprise networks. The patches come after reports of widespread exploitation by sophisticated hacking groups aiming to gain persistent access and deploy malware. Organizations using Citrix NetScaler are urged to apply the updates immediately to mitigate potential breaches. This incident highlights the ongoing challenges in securing remote access infrastructure and the importance of timely vulnerability management. The Citrix case underscores the need for continuous monitoring and rapid response to emerging cyber threats, especially those targeting critical enterprise systems. Enterprises should also review their security posture and implement layered defenses to prevent exploitation of such vulnerabilities in the future.
This Cyber News was published on www.infosecurity-magazine.com. Publication date: Wed, 27 Aug 2025 10:15:04 +0000