NetScaler ADC/Gateway zero-day exploited by attackers (CVE-2025-7775) - updated!Help Net Security·Aug 26, 00:00 UTC · Aug 26, 2025Exploit / PoC in the wildCVE-2025-7775CVE-2025-7776CVE-2025-842460
Citrix Patches Three Zero Days as One Sees Active ExploitationInfosecurity Magazine·Aug 27, 11:10 UTC · Aug 27, 2025Vulnerability in the wildCVE-2025-7775CVE-2025-7776CVE-2025-8424+1 CVEs60
Over 28,000 Citrix instances remain exposed to critical RCE flaw CVE-2025Security Affairs·Aug 27, 19:05 UTC · Aug 27, 2025Vulnerability in the wildCVE-2025-7775CVE-2025-7776CVE-2025-842460
U.S. CISA adds Citrix NetScaler flaw to its Known Exploited Vulnerabilities catalogSecurity Affairs·Aug 27, 18:20 UTC · Aug 27, 2025Exploit / PoC in the wildCVE-2025-7775CVE-2025-7776CVE-2025-842460
Citrix Patches Three NetScaler Flaws, Confirms Active Exploitation of CVE-2025The Hacker News·Aug 27, 05:11 UTC · Aug 27, 2025Vulnerability in the wildCVE-2025-7775CVE-2025-7776CVE-2025-8424+4 CVEs60
August 2025 CVE LandscapeRecorded Future·Nov 21, 00:00 UTC · Nov 21, 2025Ransomware in the wildCVE-2025-8088CVE-2025-7775CVE-2025-57819+5 CVEs60
Citrix fixed three NetScaler flaws, one of them actively exploited in the wildSecurity Affairs·Aug 26, 19:24 UTC · Aug 26, 2025Exploit / PoC in the wildCVE-2025-7775CVE-2025-7776CVE-2025-842460
Week in review: 300k+ Plex Media Server instances still vulnerable to attack, exploited Git RCE flawHelp Net Security·Aug 31, 00:00 UTC · Aug 31, 2025VulnerabilityCVE-2025-34158CVE-2025-48384CVE-2025-777560
Citrix NetScaler customers hit by third actively exploited zeroCyberScoop·Aug 26, 21:28 UTC · Aug 26, 2025Ransomware in the wildCVE-2025-7775CVE-2025-7776CVE-2025-8424+3 CVEs60
Citrix NetScaler Under Active Recon for CVE-2026The Hacker News·Mar 31, 06:09 UTC · Mar 31, 2026Exploit / PoC in the wildCVE-2026-3055CVE-2023-4966CVE-2025-5777+2 CVEs60
Citrix Urges Patching Critical NetScaler Flaw Allowing Unauthenticated Data LeaksThe Hacker News·Mar 24, 05:59 UTC · Mar 24, 2026Exploit / PoC in the wildCVE-2026-3055CVE-2026-4368CVE-2023-4966+3 CVEs60
Cisco email security appliances rooted and backdoored via still unpatched zero-dayHelp Net Security·Jan 16, 14:17 UTC · Jan 16, 2026Exploit / PoCCVE-2025-20393CVE-2025-5777CVE-2025-777560
Half of Ransomware Access Due to Hijacked VPN CredentialsInfosecurity Magazine·Nov 19, 09:40 UTC · Nov 19, 2025RansomwareCVE-2025-53770CVE-2025-54309CVE-2025-20333+2 CVEs60
Threat Actors Abuse HexstrikeInfosecurity Magazine·Sep 4, 10:30 UTC · Sep 4, 2025Threat actor in the wildCVE-2025-777560
Crooks turn HexStrike AI into a weapon for fresh vulnerabilitiesSecurity Affairs·Sep 3, 19:43 UTC · Sep 3, 2025Vulnerability in the wildCVE-2025-7775CVE-2025-7776CVE-2025-842460
Security Affairs newsletter Round 539 by Pierluigi PaganiniSecurity Affairs·Aug 31, 05:51 UTC · Aug 31, 2025Ransomware in the wildCVE-2025-9074CVE-2025-7775CVE-2025-5378660