Home / Oct 01, 2026 / Story
0
#1 The Hacker News general September 30, 2026 at 05:30 UTC

Citrix NetScaler CVE-2026-88772 Exploit Details Show Pre-Auth Path to Shellcode Execution

By [email protected] (The Hacker News)

AI Summary

CVE-2026-88772 (CVSS 9.5), a memory overflow in NetScaler's DTLS protocol handling, has been detailed by researchers and is under active exploitation targeting government, financial services, and technology organizations in North America and Europe. The pre-auth path to shellcode execution makes this critical for any org running Citrix NetScaler ADC or Gateway. Security teams should treat unpatched appliances as actively compromised given weeks of undetected exploitation reported by Mandiant.

Relevance score: 92.0/100

# More from October 01