Urgent: Active Exploitation of CitrixBleed 2 Poses Critical Security Threat

1 min read
Source: theregister.com
Urgent: Active Exploitation of CitrixBleed 2 Poses Critical Security Threat
Photo: theregister.com
TL;DR Summary

The US CISA has confirmed that the critical security flaw CVE-2025-5777, dubbed CitrixBleed 2, is actively being exploited to hijack user sessions, with attackers targeting NetScaler devices. Despite Citrix's initial reassurance, security researchers have demonstrated that the vulnerability can bypass multi-factor authentication and access sensitive data, and recent telemetry indicates ongoing exploitation and increased scanning activity. The scope of affected victims remains unclear, and Citrix has not provided further comment.

Share this article

Reading Insights

Total Reads

0

Unique Readers

1

Time Saved

2 min

vs 3 min read

Condensed

86%

48870 words

Want the full story? Read the original article

Read on theregister.com