Close Menu
NCIJ Network NCIJ Network
    What's Hot

    Yemen’s Iran-backed Houthi rebels seize strategic Red Sea port city of Mocha

    September 11, 2026

    Schools are catching on to Big Tech’s playbook

    September 11, 2026

    Introducing the Agents API | OpenAI

    September 11, 2026
    Facebook X (Twitter) Instagram
    Trending
    • Yemen’s Iran-backed Houthi rebels seize strategic Red Sea port city of Mocha
    • Schools are catching on to Big Tech’s playbook
    • Introducing the Agents API | OpenAI
    • Critical NetScaler Vulnerability Exploited in Attacks
    • Trezor Reveals Another Data Breach
    • NASA’s Life-Saving Technology Where Cell Signals Can’t Go
    • Offshore wind may be good for the climate but can it be good for the ocean, too?
    • 25 Years After 9/11, What Makes a Good Counterterrorism Strategy?
    • About
      • Our Team
      • Editorial Policy
      • Editorial Independence
      • International Support
    • Trust & Standards
      • AI Usage Policy
      • Conflict of Interest Policy
      • Corrections Policy
      • Ethics Policy
      • Fact-Checking Policy
      • Source Protection
    • Get Involved
      • Guide for Sources
      • Support Independent Journalism
    • Legal
      • Cookie Policy
      • Privacy Policy
      • Terms of Use
    Facebook X (Twitter) Instagram
    NCIJ Network NCIJ Network
    Friday, September 11
    • Home
    • World
    • Ai
    • Business
    • Politics
    • Health
    • Crypto
    • Science
    • Technology
    • Cybersecurity
    • Defense & Security
    • Economy
    • Energy
    • Europe
    • More
      • Fact Check
      • Investigations
      • Opinion & Analysis
      • Environment
    NCIJ Network NCIJ Network
    Home»Cybersecurity

    Critical NetScaler Vulnerability Exploited in Attacks

    NCIJ NETWNCIJ NETWORKBy NCIJ NETWNCIJ NETWORKSeptember 11, 2026 Cybersecurity No Comments2 Mins Read
    Share
    Facebook Twitter LinkedIn Pinterest Email

    The US Cybersecurity and Infrastructure Security Agency (CISA) on Wednesday warned that threat actors have been exploiting a critical-severity NetScaler vulnerability in attacks.

    Tracked as CVE-2026-19490 (CVSS score of 9.3), the security defect impacts all NetScaler ADC and NetScaler Gateway appliances configured as a gateway (SSL VPN, ICA Proxy, CVPN, RDP Proxy) or an AAA virtual server.

    Citrix patched the flaw on August 19, when cybersecurity firm Rapid7 warned that it could be exploited remotely without authentication.

    Rapid7 also said it was expecting threat actors to start exploiting the bug shortly, given the nature of NetScaler deployments within enterprise environments.

    “Organizations should prioritize patching affected systems on an emergency basis, since Citrix products are high-value targets that tend to quickly see exploitation in the wild,” the company said.

    On Wednesday, CISA added CVE-2026-19490 to its Known Exploited Vulnerabilities (KEV) catalog, urging federal agencies to patch it within three days, in line with BOD 26-04’s requirements.

    Advertisement. Scroll to continue reading.

    While the cybersecurity agency has not provided details on the observed exploitation attempts, its alert comes roughly a week after Previdian founder and former WatchTowr head of threat intelligence Ryan Dewhurst warned that hackers started exploiting the vulnerability.

    “An unverified but credible PoC appeared yesterday. Today, 3 IPs across 3 countries sent matching requests to our sensor,” Dewhurst said.

    CVE-2026-19490’s exploitation has been ongoing since at least September 3, one day after an exploit targeting it was published on GitHub, data from Previdian shows.

    Related: Organizations Warned of Cisco Secure FMC Exploitation

    Related: New ‘ShieldCrash’ Zero-Day Exploit Targets Microsoft Defender

    Related: Fortinet Code Execution Flaw Exploited in PivotC2 RAT Attacks

    Related: N-able Patches Critical Zero-Day in N-central

    attacks critical Exploited NetScaler Vulnerability
    NCIJ NETWNCIJ NETWORK
    • Website

    Keep Reading

    Deceptive Android Apps Exploit Google Play Early Access to Evade Reviews

    Google Play Early Access Abused to Push Thousands of Deceptive Android Apps

    Mandiant Founder Kevin Mandia Joins Amazon Board

    ThreatsDay: 200 Android Flaws, Browser-Built Phishing, 119K Scam Shops + 23 More Stories

    Cisco FMC flaws exploited by ransomware gang, state-sponsored hackers

    AI-powered attack exploited PaperCut flaws to hack 395 organizations

    Add A Comment
    Leave A Reply Cancel Reply

    Editors Picks

    Yemen’s Iran-backed Houthi rebels seize strategic Red Sea port city of Mocha

    September 11, 2026

    Schools are catching on to Big Tech’s playbook

    September 11, 2026

    Introducing the Agents API | OpenAI

    September 11, 2026

    Critical NetScaler Vulnerability Exploited in Attacks

    September 11, 2026
    Latest Posts

    Mathematicians prove perfectly fair elections are impossible

    August 2, 2026

    Coldcard Bitcoin Exploit Balloons to $88 Million as Attackers Keep Draining Wallets

    August 2, 2026

    Foldables are sort of boring now — and that’s great news for Apple

    August 2, 2026

    Subscribe to News

    Get the latest sports news from NewsSite about world, sports and politics.

    NCIJ Network is an independent digital news platform delivering trusted investigative journalism, European and global news, in-depth analysis, and fact-based reporting with accuracy, transparency, and integrity.

    Facebook X (Twitter) Instagram Pinterest YouTube

    Yemen’s Iran-backed Houthi rebels seize strategic Red Sea port city of Mocha

    September 11, 2026

    Schools are catching on to Big Tech’s playbook

    September 11, 2026

    Introducing the Agents API | OpenAI

    September 11, 2026

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Type above and press Enter to search. Press Esc to cancel.