FeedRansomware Groups Turn to Citrix Bleed 2, BYOVD, and Supply ...
The Hacker News

Ransomware Groups Turn to Citrix Bleed 2, BYOVD, and Supply Chain Credentials

📅 2 July 2026 at 18:30 UTC📰 The Hacker NewsView original source ↗
Ransomware Groups Turn to Citrix Bleed 2, BYOVD, and Supply Chain Credentials

Threat actors associated with the Anubis ransomware operation have been observed exploiting the Citrix Bleed 2 (CVE-2025-5777) vulnerability to obtain initial access. "Although tactics differ between affiliates, common patterns emerged in tradecraft through use of legitimate Remote Management and Monitoring (RMM) tooling, credential access, and hands-on-keyboard procedures used for lateral

Read the full article

This is a curated summary. The complete article is available at The Hacker News.

Read on The Hacker News
← Back to feed