公众仍然不知道是谁在利用这个关键的 Citrix 漏洞(该漏洞在漏洞被公开前几周就被黑客利用了)。不过我们现在知道,这些未知的入侵者已经利用 CVE-2026-88772 入侵了北美和欧洲的政府机构、金融服务公司、教育机构以及法律和专业服务行业。所有人都认为,Citrix 公司在披露这些安全漏洞方面花费了过长的时间。
The public still doesn’t know who is abusing a critical Citrix vulnerability exploited as a zero-day weeks before disclosure, but we now know that the unknown digital intruders have used CVE-2026-88772 to break into government agencies, financial services firms, education organizations, and legal and professional services sectors across North America and Europe. And everyone agrees that the vendor took way too long to disclose the security holes.
GrayNoise 表示他们在 9 月 24 日就发现了针对 Citrix NetScaler Gateway 的攻击尝试;而谷歌的研究人员则表示,针对 CVE-2026-88772 的攻击活动“至少从 9 月初就开始了”。
GreyNoise said it spotted an attempt to exploit CVE-2026-88771 against a Citrix NetScaler Gateway on September 24. Google researchers, meanwhile, said the CVE-2026-88772 campaign has been ongoing “since at least early September.”
“为什么 Citrix 花了这么长时间才披露这些漏洞,只有 Citrix 自己才能给出答案,”漏洞管理公司 watchTowr 的创始人兼首席执行官 Benjamin Harris 告诉《The》杂志。Citrix 拒绝回答《The》杂志关于攻击范围以及为何直到周日才向公众通报这些正在被利用的漏洞的问题。Harris 解释说:“这些漏洞是在已经遭到入侵的组织中进行事故响应和取证调查时被发现的,这意味着攻击行为以及 Citrix 对这些漏洞的认知都早于漏洞的公开披露时间。”
“Why Citrix took so long to disclose these vulnerabilities is a question only Citrix can answer,” Benjamin Harris, founder and CEO of exposure management firm watchTowr, told The. Citrix declined to answer The's questions about the scope of the attacks, and why it didn't alert the public about the CVEs under active exploitation until Sunday. “The vulnerabilities were discovered during incident response and forensic investigations at organizations already compromised, meaning both the exploitation and Citrix’s awareness of it predated public disclosure,” Harris said.
“Citrix 一直有延迟披露漏洞的习惯,即使这些漏洞已经在实际环境中被黑客利用并影响了客户。”因此,如果你正在使用 Citrix NetScaler ADC 或 NetScaler Gateway 设备,且尚未应用相应的安全补丁,请尽快进行更新。不过在此之前,Mandiant Consulting 的首席技术官 Charles Carmakal 警告用户:首先需要检查你的系统是否存在被入侵的迹象。
“Citrix has a history of delaying the publication of vulnerabilities, even when they’re being exploited in the wild and affecting customers.”So if you use Citrix NetScaler ADC and NetScaler Gateway appliances, and haven’t already applied the security updates, do that ASAP. But first, check your systems for signs of compromise, warns Mandiant Consulting CTO Charles Carmakal. “Given the active exploitation, NetScaler customers should prioritize examining their systems for compromise before upgrading/patching,” Carmakal said on LinkedIn.
“鉴于这些漏洞仍在被积极利用中,NetScaler 的用户应该优先检查系统是否已被入侵,然后再进行升级或打补丁,”Carmakal 在 LinkedIn 上写道。“如果你发现了 Web Shell 或其他恶意文件,请保留相关证据并调查入侵的范围。”
“If you find evidence of web shells or other malicious files, please preserve evidence and investigate the scope of the compromise. Patching alone may not eradicate the threat actor from your environment.”No attribution - yet Citrix disclosed eight CVEs on Sunday with the worst of the bunch – CVE-2026-88771 and CVE-2026-88772 – earning critical 9.5 CVSS scores.
“仅通过打补丁可能无法彻底清除威胁源。”尽管Citrix尚未公开攻击者的身份,但该公司在周日公布了8个安全漏洞(CVE),其中最严重的两个漏洞是CVE-2026-88771和CVE-2026-88772,它们的CVSS评分高达9.5分(属于“严重”级别)。供应商表示:“在未采取任何防护措施的情况下,确实已经有人利用了CVE-2026-88771和CVE-2026-88772漏洞对NetScaler设备进行了攻击。”
“Exploitation of CVE-2026-88771 and CVE-2026-88772 on unmitigated NetScaler deployments has been observed,” the vendor said. CVE-2026-88771 can allow an unauthenticated attacker to execute arbitrary commands remotely. CVE-2026-88772 is a memory overflow vulnerability that can lead to remote code execution or denial of service when DTLS is enabled, as it is by default on VPN virtual servers.
CVE-2026-88771漏洞允许未经授权的攻击者远程执行任意命令;CVE-2026-88772则是一种内存溢出漏洞——当VPN虚拟服务器默认启用DTLS协议时,该漏洞可能导致远程代码执行或服务中断。然而,当Citrix发布安全警告时,这些组织早已遭到攻击。“目前尚未公开攻击者的身份,我们也尚未发现攻击目标在行业或组织规模上的明显规律,”Harris说道。“历史上,NetScaler漏洞曾被国家支持的攻击组织以及勒索软件攻击者利用过。”
But by the time Citrix issued security advisories and warned customers about the vulnerabilities, they were already under attack. “No attribution has been made public, and we have yet to identify a clear trend among targets by industry or organization size,” Harris said. “Historically, NetScaler vulnerabilities have been exploited by both state-sponsored groups and ransomware operators.”
WatchTowr在周二发布了一份关于CVE-2026-88772的技术分析报告,并提供了检测工具,帮助Citrix用户判断自身系统是否受到威胁以及如何进行修复。同样在周二,谷歌的威胁情报部门提供了更多关于此次攻击活动的目标信息以及攻击者使用的自定义恶意软件的详细信息。谷歌威胁情报团队(Google Threat Intelligence Group)与Mandiant联合发布的警告中指出:“有证据表明,北美和欧洲的政府机构、金融服务行业、教育机构以及法律和专业服务领域的组织都可能受到了此次攻击活动的影响;该攻击活动至少从9月初就一直持续至今。”
WatchTowr on Tuesday published a technical writeup about CVE-2026-88772, plus a detection artifact generator for Citrix users to determine if they are vulnerable and to help with remediation. Also on Tuesday, Google’s threat intel businesses provided additional details about the exploitation campaign’s targets and the attacker’s custom malware. “We have observed evidence that organizations in North America and Europe in the government, financial services, education, legal and professional services sectors were likely impacted by this exploitation campaign, which has been ongoing since at least early September,” Google Threat Intelligence Group and Mandiant said in an advisory.
在分析了攻击者的后渗透工具包后,安全专家们发现了一种前所未见的恶意软件,该软件用于建立持久的系统访问权限,并将网络流量重定向到企业内部网络。这种恶意软件包含以下组件:
- WHIPSHOT:一个基于 PHP 的Web shell(远程控制工具);
Custom malware After analyzing the intruder’s post-exploit toolkit, the malware hunters found never-before-seen malware used to establish persistent root access and proxy traffic into internal corporate networks. The custom malware includes WHIPSHOT, a PHP web shell, and SLAPSHOT, a TCP tunneling tool written in Python.
- SLAPSHOT:一个用 Python 编写的 TCP 隧道工具。
WHIPSHOT is disguised as a Debian package and hides Base64-encoded command-and-control payloads in native HTTP headers.
WHIPSHOT 的伪装方式非常隐蔽:它以 Debian 包的形式存在,并将经过 Base64 编码的命令与控制数据隐藏在 HTTP 请求的头部中。它充当 SLAPSHOT 的通信桥梁,接收来自 WHIPSHOT 的指令,并将这些指令转发到内部主机。SLAPSHOT 可以执行以下操作:
open:建立与目标主机及端口的 TCP 连接;
It functions as an HTTP transport bridge for SLAPSHOT, which accepts commands from WHIPSHOT and forwards arbitrary TCP streams to internal hosts. Supported commands include: open, which establishes an outbound TCP socket to a target host and port. push, which writes data to an open session. pull, which polls and reads data from an open session socket. exch, which sends and receives command-and-control data to and from an open session socket. close, which terminates a specified network session. ping, which performs a basic health-check verification.
push:向已建立的连接中写入数据;
pull:从已建立的连接中读取数据;
exch:在连接之间发送和接收命令与控制数据;
“In at least one observed intrusion, the threat actor routed traffic through this proxy to manually conduct internal reconnaissance and credential theft,” the threat intel teams noted.
close:终止指定的网络连接;
ping:执行基本的网络健康检查。
威胁情报团队指出:“在至少一起入侵事件中,攻击者通过这个代理服务器来实施内部侦察并窃取敏感信息。”
Google did not immediately respond to The’s questions about the campaign, including how many exploitation attempts and successful intrusions its threat hunters observed.
谷歌并未立即回应相关问题(例如:此次攻击活动共发生了多少次尝试,以及有多少次攻击成功)。其安全警告中提到,这次针对 Citrix 系统的攻击事件“再次凸显了攻击者持续针对边缘设备(如应用交付控制器、VPN 网关和防火墙)以获取对企业网络的初始访问权限的倾向”——这一趋势在多个攻击者群体中普遍存在。
Its advisory notes that the Citrix campaign “underscores the continued targeting of edge devices to gain initial access to victim networks, a trend that GTIG has tracked across a range of threat actors.”Security and networking vulnerabilities accounted for about half of enterprise-related zero-days in 2025, according to Google’s count.
根据谷歌的统计,2025 年与企业相关的零日漏洞中,约有一半源于安全或网络方面的缺陷。攻击者特别青睐这类设备,因为它们能够直接从公共互联网访问企业网络,从而绕过终端检测工具和其他安全防护机制。尤其是 NetScaler,其存在大量已知漏洞;攻击者曾在 3 月份利用过其中一个关键漏洞。一年前,Citrix 也公开了该产品的多个零日漏洞。
Attackers love edge devices - application delivery controllers, VPN gateways, and firewalls - because they provide direct access from the open internet to corporate networks, allowing attackers to bypass endpoint detection tools and other security layers. NetScaler, in particular, is notoriously buggy. Attackers exploited another critical NetScaler vuln in March. A year earlier, Citrix disclosed multiple zero-days in the same product. ®