Security news aggregator

Latest coverage for Citrix

Explore the latest Citrix security updates, vulnerabilities, and best practices. Stay informed on protecting your Citrix environment with our insights.

32 headlines in this view

Refine the feed

Search across headline titles and summaries.

Tag briefing

Background for this topic.

Citrix is a multinational software company that provides server, application, and desktop virtualization, networking, software as a service (SaaS), and cloud computing technologies. Citrix solutions enable businesses to securely deliver applications and data over public, private, or hybrid clouds to PCs, Macs, smartphones, tablets, and thin clients—all with a high level of performance, reliability, and security.

In the context of information security, Citrix plays a vital role in enabling secure remote access to corporate resources. Citrix products incorporate advanced security measures designed to protect against data breaches, cyber threats, and unauthorized access. It offers robust encryption, access controls, identity management, and compliance capabilities that help organizations safeguard sensitive information while providing flexible remote work options. Security features such as multi-factor authentication, end-to-end encryption, and session monitoring are integral to reducing risks associated with remote connectivity and data protection in Citrix environments.

Volume over time

Weekly headline count for the current query.

Showing 20 most recent headlines of 32 Filtered view

An advanced threat actor exploited the critical vulnerabilities "Citrix Bleed 2" (CVE-2025-5777) in NetScaler ADC and Gateway, and CVE-2025-20337 affecting Cisco Identity Service Engine (ISE) as zero-days to deploy custom malware. [...]

Bank Info Security 9 months, 1 week ago

Citrix NetScaler Devices Yet Again Under Attack

Citrix Publishes Patches After Attackers Exploit Memory Overflow VulnerabilityNetScaler customers of virtualization giant Citrix once again should patch immediately to stymie the hackers exploiting a zero-day. Citrix warned Tuesday that hackers are using a memory overflow vulnerability now tracked as CVE-2025-7775. The vulnerability carries a CVSS score of 9.2.

A critical Citrix NetScaler vulnerability, tracked as CVE-2025-5777 and dubbed "CitrixBleed 2," was actively exploited nearly two weeks before proof-of-concept (PoC) exploits were made public, despite Citrix stating that there was no evidence of attacks. [...]

Bank Info Security 10 months, 2 weeks ago

Attackers Now 'Scanning Extensively' for Citrix Bleed 2

Ransomware Group Among Attackers Focused on Exploiting Citrix Netscaler FlawSecurity experts warn that attackers have ramped up their collective attempts to find and exploit Citrix NetScaler devices that remain unpatched. Cloud Security Group patched CVE-2025-5777, a flaw also known as "Citrix Bleed 2," nearly four weeks ago with a software update.

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday added a critical security flaw impacting Citrix NetScaler ADC and Gateway to its Known Exploited Vulnerabilities (KEV) catalog, officially confirming the vulnerability has been weaponized in the wild

Researchers have released proof-of-concept (PoC) exploits for a critical Citrix NetScaler vulnerability, tracked as CVE-2025-5777 and dubbed CitrixBleed2, warning that the flaw is easily exploitable and can successfully steal user session tokens. [...]

NetScaler vendor issued a patch but otherwise, stony silence Multiple exploits are circulating for CVE-2025-5777, a critical bug in Citrix NetScaler ADC and NetScaler Gateway dubbed CitrixBleed 2, and security analysts are warning a "significant portion" of users still haven't patched.…

Loading more headlines...