⤷ Title: HTB: Certified — Assumed Breach, Active Directory Privilege Escalation Using ACLs and ESC9…
════════════════════════
𐀪 Author: Paragbhosale
════════════════════════
ⴵ Time: Thu, 22 May 2025 16:42:16 GMT
════════════════════════
⌗ Tags: #adc #active_directory_security #hackthebox_writeup
════════════════════════
𐀪 Author: Paragbhosale
════════════════════════
ⴵ Time: Thu, 22 May 2025 16:42:16 GMT
════════════════════════
⌗ Tags: #adc #active_directory_security #hackthebox_writeup
Medium
HTB: Certified — Assumed Breach, Active Directory Privilege Escalation Using ACLs and ESC9 Certificate Enrollment Flaw
Recon and Initial Access
⤷ Title: Critical NetScaler Flaws Allow Access Control Bypass & Memory Overread
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 18 Jun 2025 00:34:46 +0000
════════════════════════
⌗ Tags: #Vulnerability #access control bypass #ADC #Citrix #Cloud Software Group #cybersecurity #Gateway #Memory Overread #NetScaler
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 18 Jun 2025 00:34:46 +0000
════════════════════════
⌗ Tags: #Vulnerability #access control bypass #ADC #Citrix #Cloud Software Group #cybersecurity #Gateway #Memory Overread #NetScaler
Daily CyberSecurity
Critical NetScaler Flaws Allow Access Control Bypass & Memory Overread
Cloud Software Group issues urgent patches for two critical NetScaler flaws allowing access bypass and memory overread. Update immediately.
⤷ Title: Urgent Citrix NetScaler Alert: Critical Memory Overflow Flaw (CVE-2025-6543, CVSS 9.2) Actively Exploited
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 27 Jun 2025 07:21:55 +0000
════════════════════════
⌗ Tags: #Vulnerability #ADC #Citrix #CVE_2025_6543 #cybersecurity #Denial of Service #DoS #Exploited in Wild #Gateway #Memory Overflow #NetScaler #Security Patch #vulnerability
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 27 Jun 2025 07:21:55 +0000
════════════════════════
⌗ Tags: #Vulnerability #ADC #Citrix #CVE_2025_6543 #cybersecurity #Denial of Service #DoS #Exploited in Wild #Gateway #Memory Overflow #NetScaler #Security Patch #vulnerability
Penetration Testing Tools
Urgent Citrix NetScaler Alert: Critical Memory Overflow Flaw (CVE-2025-6543, CVSS 9.2) Actively Exploited
Citrix warns of a critical memory overflow flaw (CVE-2025-6543, CVSS 9.2) in NetScaler ADC/Gateway, actively exploited for DoS. Update to patched versions immediately!
⤷ Title: Citrix Bleed 2: ReliaQuest Warns of Active Exploitation in NetScaler Gateway Vulnerability
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 30 Jun 2025 00:30:45 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #ADC #Citrix #Citrix Bleed 2 #CVE_2025_5777 #cybersecurity #Gateway #MFA Bypass #NetScaler #out_of_bounds read #ReliaQuest #Session Hijacking #Vulnerability
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 30 Jun 2025 00:30:45 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #ADC #Citrix #Citrix Bleed 2 #CVE_2025_5777 #cybersecurity #Gateway #MFA Bypass #NetScaler #out_of_bounds read #ReliaQuest #Session Hijacking #Vulnerability
Daily CyberSecurity
Citrix Bleed 2: ReliaQuest Warns of Active Exploitation in NetScaler Gateway Vulnerability
Citrix Bleed 2 (CVE-2025-5777, CVSS 9.2) is actively exploited to hijack sessions and bypass MFA on NetScaler ADC/Gateway. Patch immediately to prevent covert access and data theft.
⤷ Title: Urgent Citrix NetScaler Alert: Critical Memory Overflow Flaw (CVE-2025-6543, CVSS 9.2) Actively Exploited on 2,100+ Unpatched Appliances
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 01 Jul 2025 02:11:33 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #ADC #Citrix #CVE_2025_6543 #cybersecurity #Denial of Service #dos #Exploited in Wild #Gateway #Memory Overflow #NetScaler #security patch #Vulnerability
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 01 Jul 2025 02:11:33 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #ADC #Citrix #CVE_2025_6543 #cybersecurity #Denial of Service #dos #Exploited in Wild #Gateway #Memory Overflow #NetScaler #security patch #Vulnerability
Daily CyberSecurity
Urgent Citrix NetScaler Alert: Critical Memory Overflow Flaw (CVE-2025-6543, CVSS 9.2) Actively Exploited on 2,100+ Unpatched Appliances
A critical flaw (CVE-2025-6543, CVSS 9.2) in NetScaler ADC/Gateway is actively exploited for DoS. Over 2,100 unpatched appliances remain susceptible. Update immediately!
⤷ Title: HOW TO EXPLOIT ESC2 IN ADCS — IN DETAIL
════════════════════════
𐀪 Author: 0xZ3US
════════════════════════
ⴵ Time: Fri, 04 Jul 2025 00:46:58 GMT
════════════════════════
⌗ Tags: #red_teaming #hacking #adc #learn_hacking
════════════════════════
𐀪 Author: 0xZ3US
════════════════════════
ⴵ Time: Fri, 04 Jul 2025 00:46:58 GMT
════════════════════════
⌗ Tags: #red_teaming #hacking #adc #learn_hacking
Medium
🔥 HOW TO EXPLOIT ESC2 IN ADCS — IN DETAIL
Hello! My name is 0xZ3US, a 21-year-old passionate about hacking and red teaming operations. I’m always eager to expand my knowledge of…
⤷ Title: Urgent Citrix Bleed 2 (CVE-2025-5777, CVSS 9.3) Actively Exploited: MFA Bypass & Session Hijacking Threaten Enterprises
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 09 Jul 2025 02:41:32 +0000
════════════════════════
⌗ Tags: #Vulnerability #ADC #Citrix #Citrix Bleed 2 #CVE_2025_5777 #cybersecurity #Gateway #MFA Bypass #NetScaler #Out_of_Bounds Read #ReliaQuest #Session Hijacking #vulnerability
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 09 Jul 2025 02:41:32 +0000
════════════════════════
⌗ Tags: #Vulnerability #ADC #Citrix #Citrix Bleed 2 #CVE_2025_5777 #cybersecurity #Gateway #MFA Bypass #NetScaler #Out_of_Bounds Read #ReliaQuest #Session Hijacking #vulnerability
Penetration Testing Tools
Urgent Citrix Bleed 2 (CVE-2025-5777, CVSS 9.3) Actively Exploited: MFA Bypass & Session Hijacking Threaten Enterprises
Citrix Bleed 2 (CVE-2025-5777, CVSS 9.3) is actively exploited to hijack sessions and bypass MFA on NetScaler ADC/Gateway. Patch immediately to prevent covert access and data theft.
⤷ Title: CitrixBleed 2: CVE-2025-5777 Joins CISA’s KEV Catalog Amid Active Exploitation Storm, PoC Available
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 11 Jul 2025 02:13:28 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #ADC #CISA KEV #Citrix #Citrix Bleed 2 #CVE_2025_5777 #cybersecurity #Exploited in Wild #Gateway #MFA Bypass #NetScaler #out_of_bounds read #Session Hijacking #Vulnerability
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 11 Jul 2025 02:13:28 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #ADC #CISA KEV #Citrix #Citrix Bleed 2 #CVE_2025_5777 #cybersecurity #Exploited in Wild #Gateway #MFA Bypass #NetScaler #out_of_bounds read #Session Hijacking #Vulnerability
Daily CyberSecurity
CitrixBleed 2: CVE-2025-5777 Joins CISA’s KEV Catalog Amid Active Exploitation Storm, PoC Available
CISA adds critical CitrixBleed 2 (CVE-2025-5777, CVSS 9.2) to KEV, confirming active exploitation. Attackers are extracting session tokens to bypass MFA and hijack sessions on NetScaler ADC/Gateway
⤷ Title: ESC3 ADCS Misconfigurations exploitation — Active Directory Pentesting
════════════════════════
𐀪 Author: 0xc4t
════════════════════════
ⴵ Time: Wed, 22 Oct 2025 07:03:54 GMT
════════════════════════
⌗ Tags: #red_team #pentest #active_directory_security #adc #hacking
════════════════════════
𐀪 Author: 0xc4t
════════════════════════
ⴵ Time: Wed, 22 Oct 2025 07:03:54 GMT
════════════════════════
⌗ Tags: #red_team #pentest #active_directory_security #adc #hacking
Medium
ESC3 ADCS Misconfigurations exploitation — Active Directory Pentesting
Active Directory Certificate Services (ADCS) is the target of the ESC3 certificate attack, where attackers exploit misconfigurations in…
⤷ Title: Play Ransomware Claims Breach of Defense Contractor ADC Aerospace, Stealing Client Data
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 02 Dec 2025 04:31:57 +0000
════════════════════════
⌗ Tags: #Data Leak #ADC Aerospace #Aerospace Supply Chain #data breach #Defense Contractor #Financial Data #Play Ransomware #ransomware attack
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 02 Dec 2025 04:31:57 +0000
════════════════════════
⌗ Tags: #Data Leak #ADC Aerospace #Aerospace Supply Chain #data breach #Defense Contractor #Financial Data #Play Ransomware #ransomware attack
Penetration Testing Tools
Play Ransomware Claims Breach of Defense Contractor ADC Aerospace, Stealing Client Data
The American manufacturer of aerospace and defense components ADC Aerospace has come under scrutiny following a potential cyberattack:
⤷ Title: ESC5 ADCS Misconfigurations exploitation — Active Directory Pentesting
════════════════════════
𐀪 Author: 0xc4t
════════════════════════
ⴵ Time: Wed, 03 Dec 2025 12:23:15 GMT
════════════════════════
⌗ Tags: #hacking #red_team #pentest #esc5 #adc
════════════════════════
𐀪 Author: 0xc4t
════════════════════════
ⴵ Time: Wed, 03 Dec 2025 12:23:15 GMT
════════════════════════
⌗ Tags: #hacking #red_team #pentest #esc5 #adc
Medium
ESC5 ADCS Misconfigurations exploitation — Active Directory Pentesting
ESC5 is an attack that targets Active Directory Certificate Services (ADCS). This attack exploits access to the Certificate Authority (CA).
⤷ Title: The New CitrixBleed: Critical CVE-2026-3055 Under Active Attack to Hijack Admin Sessions
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 02 Apr 2026 07:37:15 +0000
════════════════════════
⌗ Tags: #Vulnerability #ADC #Citrix #CitrixBleed #CVE_2026_3055 #Cyber attack 2026 #Gateway #Infosec #NetScaler #SAML #Session Hijacking #vulnerability #WatchTowr
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 02 Apr 2026 07:37:15 +0000
════════════════════════
⌗ Tags: #Vulnerability #ADC #Citrix #CitrixBleed #CVE_2026_3055 #Cyber attack 2026 #Gateway #Infosec #NetScaler #SAML #Session Hijacking #vulnerability #WatchTowr
Penetration Testing Tools
The New CitrixBleed: Critical CVE-2026-3055 Under Active Attack to Hijack Admin Sessions
The architectural frailty within Citrix networking apparatuses, which until recently was characterized merely as a latent peril, is
⤷ Title: Progress Kemp LoadMaster Alert: Multiple RCE and WAF Bypass Flaws Patched
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 21 Apr 2026 02:09:54 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #ADC Security #CVE_2026_3517 #CVE_2026_3518 #CVE_2026_3519 #CVE_2026_4048 #infosec #Kemp LoadMaster #os command injection #Patch Alert #Progress Software #WAF Bypass
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 21 Apr 2026 02:09:54 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #ADC Security #CVE_2026_3517 #CVE_2026_3518 #CVE_2026_3519 #CVE_2026_4048 #infosec #Kemp LoadMaster #os command injection #Patch Alert #Progress Software #WAF Bypass
Daily CyberSecurity
Progress Kemp LoadMaster Alert: Multiple RCE and WAF Bypass Flaws Patched
Progress Kemp LoadMaster reveals 5 high-severity vulnerabilities, including a WAF bypass and OS command injection. Secure your ADC with the April 2026 patch.
⤷ Title: How I Escalated to Domain Admin Using AD CS (And How to Fix It)
════════════════════════
𐀪 Author: Aruvasaga chithan A
════════════════════════
ⴵ Time: Fri, 10 Jul 2026 09:24:36 GMT
════════════════════════
⌗ Tags: #ethical_hacking #active_directory_security #red_teaming #adc
════════════════════════
𐀪 Author: Aruvasaga chithan A
════════════════════════
ⴵ Time: Fri, 10 Jul 2026 09:24:36 GMT
════════════════════════
⌗ Tags: #ethical_hacking #active_directory_security #red_teaming #adc
Medium
How I Escalated to Domain Admin Using AD CS (And How to Fix It)
What is AD CS?
⤷ Title: Progress Patches Five Kemp LoadMaster Vulnerabilities
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Tue, 28 Jul 2026 02:12:30 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #ADC Security #CVE_2026_59686 #CVE_2026_59687 #CVE_2026_59688 #CVE_2026_59689 #CVE_2026_59690 #Kemp LoadMaster #LoadMaster vulnerabilities #os command injection #privilege escalation #Progress Kemp LoadMaster
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Tue, 28 Jul 2026 02:12:30 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #ADC Security #CVE_2026_59686 #CVE_2026_59687 #CVE_2026_59688 #CVE_2026_59689 #CVE_2026_59690 #Kemp LoadMaster #LoadMaster vulnerabilities #os command injection #privilege escalation #Progress Kemp LoadMaster
Daily CyberSecurity
Progress Patches Five Kemp LoadMaster Vulnerabilities
TL;DR Progress fixed five Kemp LoadMaster vulnerabilities in a July 2026 bulletin. Three allow OS command injection, and two allow privilege escalation. Each one can lead to full system compromise…