Attacks on NetScaler Gateways aim for user credentials

Threat actors are continuing to attack a critical 9.8 vulnerability in unpatched NetScaler Gateways and then insert malicious scripts into the HTML content of the authentication web page to capture user credentials. The vulnerability — CVE-2023-3519 — was first reported in July when the Cybersecurity and Infrastructure Security Agency (CISA) put the bug on its Known Exploited Vulnerabilities (KEV) catalog.

Source: SC Magazine

 


Date:

Categorie(s):