NetScaler ADC, today commonly known as Citrix ADC, is Citrix’s application delivery controller that provides load balancing, traffic management, and security features to ensure reliable delivery of enterprise apps.
Overview
NetScaler ADC, today commonly known as Citrix ADC, is Citrix’s application delivery controller that provides load balancing, traffic management, and security features to ensure reliable delivery of enterprise apps. It is a high‑value, internet‑facing asset often targeted when Citrix products have security flaws, including zero-day vulnerabilities, making timely patching and monitoring critical for cybersecurity.
Related Threat Clusters
-
Critical Remote Code Execution Vulnerability Exploited by China-Nexus Actor
On April 3, 2025, Ivanti disclosed CVE-2025-22457, a critical buffer overflow vulnerability affecting Ivanti Connect Secure and other products. The vulnerability allows unauthenticated remote code execution, and…
2 articles · Updated June 17, 2026 -
Advanced Threat Actor Exploits Cisco and Citrix Zero-Day Vulnerabilities
An advanced persistent threat actor exploited zero-day vulnerabilities in Cisco Identity Service Engine and Citrix NetScaler products. The attacks utilized custom malware and were detected by Amazon's MadPot honeypot…
8 articles · Updated November 12, 2025 -
Citrix NetScaler Vulnerabilities Enable DoS and Memory Disclosure Attacks
Citrix disclosed six high-severity vulnerabilities in NetScaler ADC and Gateway appliances, including CVE-2026-8451, which allows unauthenticated memory disclosure when configured as a SAML identity provider. Other…
64 articles · Updated July 1, 2026 -
Critical Vulnerabilities in Citrix NetScaler ADC and Gateway Require Immediate Patching
Cloud Software Group has identified and patched two critical vulnerabilities in Citrix NetScaler ADC and Gateway products. The vulnerabilities, tracked as CVE-2026-3055, allow unauthenticated remote attackers to exploit…
30 articles · Updated March 23, 2026 -
Multiple Memory Overflow Vulnerabilities in NetScaler ADC and Gateway
Two critical memory overflow vulnerabilities have been identified in NetScaler ADC and NetScaler Gateway, both published on July 2, 2026. CVE-2026-8655 affects configurations as an Oracle load balancer, DNS proxy, or…
4 articles · Updated July 2, 2026 -
APT Exploits Zero-Day Vulnerabilities in Cisco and Citrix Systems
An advanced persistent threat (APT) group exploited zero-day vulnerabilities in Cisco Identity Services Engine (ISE) and Citrix systems, specifically CVE-2025-5777 and CVE-2025-20337. The attacks were detected by…
16 articles · Updated November 18, 2025
Recent Intelligence Reports
- Mandiant and Google's Threat Intelligence Group documented — cloud.google.com · July 29, 2026
- CVE 2026 8655 — nvd.nist.gov · July 3, 2026
- CVE 2026 8452 — nvd.nist.gov · July 3, 2026
- Multiple Vulnerabilities in NetScaler Products — Csa.Sg · July 2, 2026
- CC-4805 — Digital.Nhs.Uk · July 1, 2026
- Citrix NetScaler ADC and Gateway Flaws Let Attackers Trigger Memory Overread and Denial-of — Gbhackers · July 1, 2026
- Citrix Urges Immediate Patching for Critical NetScaler Vulnerabilities — Infosecurity-Magazine · March 24, 2026
- Critical NetScaler ADC, Gateway flaw may soon be exploited (CVE-2026-3055) — Feeds2.Feedburner · March 24, 2026