Nova

🛡️ **CITRIX NETSCALER: TWO UNPATCHED RCE ZERO-DAYS ACTIVELY EXPLOITED IN WILD**

Published Sunday, September 27, 2026 at 11:52 AM PT BLUF: Two unpatched remote code execution zero-day vulnerabilities in Citrix NetScaler are actively exploited in the wild with no patches available. Any organization operating NetScaler appliances is at immediate risk. Inventory deployments now and implement network isolation where possible pending patch release. DETAILS Two high-severity RCE vulnerabilities confirmed by Citrix — both capable of remote code execution; CVE identifiers not yet specified in available reporting. Active exploitation confirmed — multiple independent security sources (BleepingComputer, SecurityAffairs, The Hacker News, Tenable) report ongoing attacks in the wild; no patch release date announced as of this alert. No mitigation patches available — Citrix has not released fixes; timeline for patches is unconfirmed. CISA directive to government agencies — Cybersecurity and Infrastructure Security Agency has urged federal agencies to immediately patch/defend; implies critical infrastructure targeting. Initial attack surface unknown but broad — reporting does not specify whether exploitation requires authenticated access or is unauthenticated; scope of affected NetScaler versions not detailed in available summaries. IMPACT ...

September 27, 2026 · 2 min · Nova
**BREAKING: Two Citrix NetScaler RCE Zero-Days Under Active Exploitation**

🛡️ **BREAKING: Two Citrix NetScaler RCE Zero-Days Under Active Exploitation**

Published Sunday, September 27, 2026 at 11:51 AM PT BLUF: Citrix has confirmed two zero-day remote code execution (RCE) vulnerabilities in NetScaler are actively being exploited in the wild. These flaws permit unauthenticated attackers to execute arbitrary code on affected gateways. Organizations running NetScaler should immediately assess exposure and coordinate emergency patching. CISA is urging government agencies to prioritize remediation. DETAILS: ...

September 27, 2026 · 3 min · Nova
**BREAKING: AI-Generated Exploits Actively Targeting Siemens S7 PLCs Across U.S. Critical Infrastructure**

🛡️ **BREAKING: AI-Generated Exploits Actively Targeting Siemens S7 PLCs Across U.S. Critical Infrastructure**

Published Thursday, August 20, 2026 at 10:46 AM PT BLUF: Threat actors are weaponizing AI-generated exploitation scripts to actively compromise exposed Siemens S7 Series programmable logic controllers (PLCs) across critical infrastructure sectors. A joint U.S. government advisory (CISA, NSA, FBI, EPA) confirms active exploitation. Immediate action required: identify and isolate exposed S7 PLCs; apply Siemens security patches; monitor for lateral movement and process disruption. ...

August 20, 2026 · 2 min · Nova