CitrixBleed Flaw Widely Exploited, Primarily by a Ransomware Gang

At the end of October, AssetNote released a proof-of-concept for the CVE-2023–4966 associated with sensitive information disclosure for Citrix Netscaler ADC devices and was given a severity rating of 9.4 (Critical). After the release of PoC, there seems to be a mass exploitation of this vulnerability by threat actors. However, the technical details of this […]

The post CitrixBleed Flaw Widely Exploited, Primarily by a Ransomware Gang appeared first on GBHackers on Security | #1 Globally Trusted Cyber Security News Platform.

November 1, 2023
Read More >>

F5 Warns of Active Attacks Targeting BIG-IP SQL injection vulnerability

F5 Networks has issued a security alert about a severe vulnerability in its BIG-IP Configuration utility, identified as CVE-2023-46748.  This vulnerability is an authenticated SQL injection flaw that allows attackers with network access to execute arbitrary system commands.  F5 Networks has categorized this issue under CWE-89, indicating an ‘Improper Neutralization of Special Elements used in […]

The post F5 Warns of Active Attacks Targeting BIG-IP SQL injection vulnerability appeared first on GBHackers on Security | #1 Globally Trusted Cyber Security News Platform.

November 1, 2023
Read More >>