CVE-2026-3055 & CVE-2026-4368: Inside the NetScaler "CitrixBleed 3" Memory Overread

CVE-2026-3055 & CVE-2026-4368: Inside the NetScaler “CitrixBleed 3” Memory Overread

Key Points CVE-2026-3055 is a critical (CVSS v4.0 9.3) unauthenticated memory overread vulnerability in Citrix NetScaler ADC and NetScaler Gateway appliances configured as SAML Identity Providers. Attackers send malformed requests to /saml/login ...

Spring4Shell: CVE-2022-22965

| | Emerging Threat
Spring4Shell (CVE-2022-22965) or the remote code execution vulnerability found in Spring Core Framework was observed and confirmed in March of 2022. Spring Framework is an open-source application framework, used for the development ...

CONTI

| | Emerging Threat
OVERVIEW CONTI is a prolific human-operated ransomware. Its actors routinely engage in doxing in order to coerce victims to pay the ransom. It is capable of encrypting files on both the local ...

HermeticWiper

| | Emerging Threat
OVERVIEW The HermeticWiper malware variant was first identified by researchers from ESET and Broadcom’s Symantec on February 23, 2022 and has been observed attacking Ukrainian government and organizations during the tensions between ...