CYFIRMA Research

CYFIRMA Research: CVE-2025-5777– Pre-Auth Memory Leak in Citrix NetScaler (CitrixBleed 2)

CYFIRMA

Critical Alert: CVE-2025-5777 – Pre-Auth Memory Leak in Citrix NetScaler (CitrixBleed 2)!

Organizations relying on Citrix NetScaler ADC and Gateway for secure remote access must act immediately. This newly uncovered vulnerability allows unauthenticated attackers to leak sensitive memory—including session tokens—by sending malformed authentication requests.

Exploited in the wild and backed by public PoC code, this flaw enables session hijacking, MFA bypass, and potential lateral movement inside enterprise networks. Given its low complexity and global attack surface, CVE-2025-5777 is a high-priority threat for critical sectors like government, finance, and telecom.
Apply patches, terminate active sessions, restrict exposure, and monitor for abnormal authentication flows!

Link to the Research Report: https://www.cyfirma.com/research/cve-2025-5777-pre-auth-memory-leak-in-citrix-netscaler-citrixbleed-2/

#CyberSecurity #CitrixBleed2 #CVE20255777 #NetScaler #ThreatIntel 

#ExternalThreatLandscapeManagement #ZeroTrust #VulnerabilityAlert 

#SessionHijack #MFABypass #ETLM #CYFIRMA #CYFIRMAresearch

https://www.cyfirma.com/