Oct. 26, 2023, 7:46 p.m. | SC Staff

SC Magazine feed for Strategy www.scmagazine.com

Vulnerable Citrix NetScaler Application Delivery Controller and NetScaler Gateway instances impacted by the recently remediated critical severity Citrix Bleed information disclosure bug, tracked as CVE-2023-4966, could have their authentication session cookies stolen and be hijacked through a new proof-of-concept exploit discovered by Assetnote researchers, reports BleepingComputer.

application application delivery application delivery controller assetnote authentication bleepingcomputer bug citrix citrix netscaler concept controller cookies critical cve delivery disclosure endpointdevice-security exploit gateway hijacked information information disclosure netscaler netscaler gateway proof proof-of-concept reports researchers security-staff-acquisition-development session severity stolen takeovers vulnerability management vulnerable

CyberSOC Technical Lead

@ Integrity360 | Sandyford, Dublin, Ireland

Cyber Security Strategy Consultant

@ Capco | New York City

Cyber Security Senior Consultant

@ Capco | Chicago, IL

Senior Security Researcher - Linux MacOS EDR (Cortex)

@ Palo Alto Networks | Tel Aviv-Yafo, Israel

Sr. Manager, NetSec GTM Programs

@ Palo Alto Networks | Santa Clara, CA, United States

SOC Analyst I

@ Fortress Security Risk Management | Cleveland, OH, United States