DEV Community

Mark0
Mark0

Posted on

Hackers exploit Citrix NetScaler zero-day to deploy web shells

Hackers have been observed exploiting a critical zero-day vulnerability, tracked as CVE-2023-3519, within Citrix NetScaler ADC and Gateway appliances. This flaw allows for unauthenticated remote code execution (RCE), which attackers are leveraging to install persistent PHP web shells on compromised devices to gain unauthorized access and maintain a foothold in victim networks.

Security researchers and government agencies, including CISA, have warned that this vulnerability has been actively exploited in the wild. Organizations using affected Citrix products are urged to apply the latest security patches immediately to mitigate the risk of data exfiltration and further lateral movement within their environments.


Read Full Article

Top comments (0)