Citrix Bleed Vulnerability Exploited by LockBit Ransomware Affiliates

1 min read
Source: CISA
TL;DR Summary

The Cybersecurity and Infrastructure Security Agency (CISA) has issued a joint advisory with the FBI, MS-ISAC, and ASD's ACSC, warning about the LockBit 3.0 ransomware exploiting the Citrix Bleed vulnerability (CVE-2023-4966) in Citrix NetScaler ADC and Gateway appliances. LockBit 3.0 affiliates have been observed using this vulnerability to bypass password requirements and multifactor authentication, allowing them to hijack legitimate user sessions and gain elevated permissions to harvest credentials and access data. Network administrators are urged to apply necessary software updates and implement mitigations to protect against this ransomware threat.

Share this article

Reading Insights

Total Reads

0

Unique Readers

1

Time Saved

25 min

vs 26 min read

Condensed

98%

5,02489 words

Want the full story? Read the original article

Read on CISA