The U.S. cybersecurity agency CISA has issued a warning that hackers are actively exploiting a critical-rated security flaw in a popular Citrix product. This flaw, dubbed “Citrix Bleed 2” by security researchers, is similar to a previous 2023 security vulnerability in Citrix NetScaler. Like its predecessor, Citrix Bleed 2 can be remotely exploited to extract sensitive credentials from affected devices, potentially giving hackers broader access to a company’s network.
CISA has evidence that this bug is being actively used in hacking campaigns, with reports of hacks dating back to mid-June. Following the publication of details about the NetScaler exploit, Akamai noted a significant increase in scanning efforts to find vulnerable devices. Recognizing the severity of the situation, CISA has ordered federal government agencies to patch any Citrix device affected by the bug by Friday.
While Citrix has not acknowledged the exploitation of this vulnerability, the company’s security advisory advises customers to update affected devices promptly. Despite requests for comment, Citrix representatives have not responded to inquiries from TechCrunch.
