CHECKLEAKED.CC

Loading

Classic site

DAILY BRIEFING

Citrix urges admins to patch new NetScaler flaws as soon as possible

Today's briefing covers critical Citrix NetScaler updates, CDN HTTP/3 DoS amplification techniques, and new Android malware that exfiltrates data via mesh relaying.

network administrators and security engineers should prioritize verifying edge configurations. Beyond standard patch management, defensive focus must expand to cover protocol-level translation behaviors and peer-to-peer data relay tactics.

Citrix urges admins to patch new NetScaler flaws as soon as possible

Citrix issued an urgent advisory asking administrators to immediately patch two vulnerabilities impacting NetScaler Gateway secure remote access solutions and NetScaler ADC networking appliances.

  • citrix
  • netscaler
Read the original

CDN Tsunami Attack Abuses HTTP/3 Translation for Up to 350x DoS Amplification

Researchers disclosed the 'CDN Tsunami' attack, which exploits HTTP/3 to HTTP/1.1 translation in major CDNs to achieve up to 350x denial-of-service bandwidth amplification against origin servers.

Why it matters
Websites utilizing affected CDN providers for edge HTTP/3 translation are vulnerable to severe origin server bandwidth exhaustion.
What to do
Review CDN edge protocol translation settings and origin server buffering controls.
  • cdn
  • dos
  • http3
  • cloudflare
Read the original

Manic Android Malware Exfiltrates Data From Offline Phones via Nearby Infected Devices

A new Android malware strain named 'Manic' combines banking fraud and surveillance capabilities, utilizing a novel Wi-Fi mesh network technique to exfiltrate stolen data from offline devices via nearby infected smartphones.

Why it matters
Financial, government, and military targets face persistent data exfiltration even when devices are disconnected from the internet.
  • android
  • malware
  • manic
  • spyware
Read the original

Zombie Card Attack Can Revive Expired Visa Cards for Contactless Payments

Researchers demonstrated the 'Zombie Card' attack, which uses a man-in-the-middle relay to modify the expiration date on expired Visa contactless credit cards via NFC, enabling unauthorized in-store purchases if the account remains open.

  • visa
  • nfc
  • pos
Read the original

Why "Shady AI" is Security's Next Big Governance Problem

An incident at Meta exposed sensitive internal and user data after an employee used an approved AI agent that published confidential details publicly on an internal forum, highlighting risks associated with 'shady AI'.

Why it matters
Organizations using sanctioned AI tools face unexpected data exposure risks when approved agents process sensitive information without strict access boundaries.
  • meta
  • ai
  • governance
Read the original

Key takeaways

  • CDN Tsunami attacks exploit HTTP/3 to HTTP/1.1 translation to amplify DoS traffic up to 350x against origin servers.
  • Manic Android malware uses a local Wi-Fi mesh to exfiltrate data from offline devices via nearby infected endpoints.
  • NetScaler
  • ZombieCard
  • ShadyAI
  • Manic