vulnerability
Attackers Exploit NetScaler Flaw for Root Access, Deploy WHIPSHOT and SLAPSHOT
CriticalCVSS 9.8KEVEPSS 1%
Summary
Threat actors are exploiting a newly patched vulnerability in Citrix NetScaler ADC and NetScaler Gateway appliances to gain root access and deploy post-exploitation tools. Multiple threat actors are attempting to exploit the vulnerability, with GreyNoise detecting overlapping activity and CERT-EU identifying attacks leveraging Base64-encoded commands in User-Agent strings.
Summary written automatically in our own words from the original article, which belongs to its publisher and remains the reference. It may contain errors. Sources & data
