I read the article from Tripwire but i found this deep dive from MDSec more useful: https://www.mdsec.co.uk/2020/01/deep-dive-to-citrix-adc-remote-code-execution-cve-2019-19781/?fbclid=IwAR2HA3LGpxLjJNlyp780VCrucRJjc5vBaGKLbo_juyscPsMHjTF0KcXChWI …
-
-
-
Yep, this was done before that article was released too :)
Kraj razgovora
Novi razgovor -
-
-
I asked this question on a discord maybe you can help answer it here. How are people scanning to find these vulnerable netscalers? I mean I read an article stating that there is 80k corporations with vulnerable Citrix exposed.
-
People are scanning for the URL: /vpn/../vpns/cfg/smb.conf and another URL. More can be found here: https://isc.sans.edu/forums/diary/A+Quick+Update+on+Scanning+for+CVE201919781+Citrix+ADC+Gateway+Vulnerability/25686/ …
- Još 2 druga odgovora
Novi razgovor -
-
-
you know some dudes are now doing the GET to portal/cdl.xml thinking that is the POC right?

-
The new c99shell.php has arrived
Kraj razgovora
Novi razgovor -
-
-
nice j0b
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi
-
-
-
interesting



Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi
-
Čini se da učitavanje traje već neko vrijeme.
Twitter je možda preopterećen ili ima kratkotrajnih poteškoća u radu. Pokušajte ponovno ili potražite dodatne informacije u odjeljku Status Twittera.
