As cited
Copy frozen at (site build).
vulnerabilities
Exploitation of CitrixBleed 2 (CVE-2025-5777) Began Before PoC Was Public
GreyNoise detected active exploitation of CVE-2025-5777, a memory overread vulnerability in Citrix NetScaler, starting June 23, approximately two weeks before a public proof-of-concept was publicly released on July 4. This indicates attackers had access to exploitation knowledge or techniques ahead of public disclosure.
Why it matters: Citrix NetScaler administrators need to prioritize patching this vulnerability immediately, as evidence of pre-public exploitation suggests threat actors are actively leveraging it in the wild.
- Source published
- First seen by Cybersecurity Tracker
Source attribution
Correction
Correction recorded as of .
vulnerabilities
Exploitation of CitrixBleed 2 (CVE-2025-5777) Began Before PoC Was Public
GreyNoise detected active exploitation of CVE-2025-5777, a memory overread vulnerability in Citrix NetScaler, starting June 23, approximately two weeks before a public proof-of-concept was publicly released on July 4. This indicates attackers had access to exploitation knowledge or techniques ahead of public disclosure.
Why it matters: Citrix NetScaler administrators need to prioritize patching this vulnerability immediately, as evidence of pre-public exploitation suggests threat actors are actively leveraging it in the wild.
- Source published
- First seen by Cybersecurity Tracker