Aug. 29, 2023, 1:51 p.m. | MalBot

Malware Analysis, News and Indicators - Latest topics malware.news

UPDATE -- The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a critical-severity Citrix bug to its known exploited vulnerabilities catalog and is “strongly urging” organizations to prioritize the patch for the flaw after discovering evidence of exploitation.


The vulnerability (CVE-2023-24489) exists in the Citrix file sharing and transfer application, ShareFile, and if exploited allows unauthenticated attackers to remotely compromise the customer-managed ShareFile storage zone controller. According to the ShareFile website, the storage zone controller is used to host …

agency application bug catalog cisa citrix citrix sharefile critical cve cve-2023-24489 cybersecurity exploit exploitation exploited exploited vulnerabilities file file sharing flaw infrastructure infrastructure security known exploited known exploited vulnerabilities known exploited vulnerabilities catalog organizations patch security severity sharefile sharing threat threat actors transfer update vulnerabilities vulnerability

CyberSOC Technical Lead

@ Integrity360 | Sandyford, Dublin, Ireland

Cyber Security Strategy Consultant

@ Capco | New York City

Cyber Security Senior Consultant

@ Capco | Chicago, IL

Sr. Product Manager

@ MixMode | Remote, US

Security Compliance Strategist

@ Grab | Petaling Jaya, Malaysia

Cloud Security Architect, Lead

@ Booz Allen Hamilton | USA, VA, McLean (1500 Tysons McLean Dr)