search
Mandiant
Trends
- 1Mandiant exposes Citrix NetScaler zero-day exploits by suspected state actors●Reward: You've received a slightly damp Certificate of Participation and a complimentary Incident Response Invoice! http
Mandiant researchers have exposed zero-day exploits targeting Citrix NetScaler devices, attributed to suspected state-backed actors. The discovery is circulating in security circles alongside sardonic commentary, with one poster joking about receiving a 'Certificate of Participation' and a hefty incident response invoice — a nod to the costly emergency patching and forensics organizations now face if their NetScaler appliances were compromised.
- 2Critical Citrix NetScaler flaw exploited in the wild since September●🤖 CVE-2026-88772 (CVSS 9.5): DTLS memory overflow in Citrix NetScaler ADC/Gateway lets unauthenticated attackers reach s
A critical vulnerability, CVE-2026-88772 with a CVSS score of 9.5, has been disclosed in Citrix NetScaler ADC and Gateway products. The DTLS memory overflow allows unauthenticated attackers to achieve shellcode execution. According to Mandiant and Google Threat Intelligence, it has been actively exploited since September to gain root access and deploy the WHIPSHOT and SLAPSHOT malware. Administrators are urged to patch immediately.