By David Hollingworth
Publication Date: 2026-10-01 00:22:00
The Australian Signals Directorate’s Australian Cyber Security Centre has updated its advice regarding exploitation of a pair of vulnerabilities in Citrix NetScaler ADC and Citrix NetScaler Gateway products.
“The Australian Signals Directorate’s Australian Cyber Security Centre (ASD’s ACSC) has received reports from Australian organisations confirming exploitation,” the agency said in an overnight Critical Alert.
You’re out of free articles for this month
“ASD’s ACSC recommends reviewing for evidence of compromise since at least 4 September 2026. Citrix has made indicators of compromise available through NetScaler Console and published additional guidance in their recent publication, Security Bulletin for CVE-2026-88771 through CVE-2026-88778.”
Citrix recently disclosed eight vulnerabilities in its ADC and Gateway products, but the pair above are the focus of the malicious activity.
“Organisations should consider internal security…

