Start your day with intelligence. Get The OODA Daily Pulse.

Home > Briefs > Cyber > Evidence Suggests Exploitation of CitrixBleed 2 Vulnerability

Evidence Suggests Exploitation of CitrixBleed 2 Vulnerability

Security firm ReliaQuest has found signs that CVE-2025–5777, a critical vulnerability in Citrix NetScaler dubbed “CitrixBleed 2,” is being actively exploited to hijack sessions and bypass MFA protections. The flaw allows attackers to extract session tokens through a memory overread, potentially granting long-term, undetected access across systems. Though Citrix has not confirmed exploitation, experts warn the vulnerability resembles a 2023 flaw widely abused by ransomware actors and urge organizations to patch immediately.

Read more:

https://www.securityweek.com/evidence-suggests-exploitation-of-citrixbleed-2-vulnerability/