Citrix NetScaler Attack & M365 Password Spraying – Weekly News Roundup

Here is the most recent Cybersecurity news for the past week:

🌐Citrix NetScaler Memory Overread Vulnerability Under Active Attack
Attackers are actively exploiting a high-severity vulnerability (CVE-2026-8451) affecting Citrix NetScaler ADC and Gateway appliances configured as SAML identity providers. The flaw allows unauthenticated attackers to leak sensitive information from system memory, drawing comparisons to the widely exploited “CitrixBleed” vulnerability.
https://www.darkreading.com/vulnerabilities-threats/citrixbleed-ing-again-netscaler-vulnerability-under-attack

☁️Massive Microsoft 365 Password-Spraying Campaign Spans 81 Million Hits
Huntress reported an aggressive password-spraying campaign that generated more than 81 million login attempts against Microsoft 365 environments. The attackers exploited legacy authentication configurations to compromise dozens of organizations despite MFA being deployed.
https://www.bleepingcomputer.com/news/security/hackers-target-microsoft-365-accounts-with-81-million-login-attempts/

🚨Critical Pre-Authentication Vulnerabilities Hit BeyondTrust Remote Access Tools
BeyondTrust disclosed two critical vulnerabilities affecting its Remote Support and Privileged Remote Access appliances. Under specific configurations, unauthenticated attackers could bypass authentication and gain full administrative control.
https://www.beyondtrust.com/trust-center/security-advisories/bt26-03

πŸ€–‘GitLost’ Vulnerability Exposes GitHub Agentic Workflows to Private Code Theft
Researchers discovered “GitLost,” a prompt injection vulnerability affecting GitHub Agentic Workflows. Attackers can manipulate AI agents into exposing private source code through malicious issues submitted to public repositories.
https://thehackernews.com/2026/07/public-github-issue-could-trick-github.html

🎯Fake Corporate Job Postings Target Marketing Professionals with Malware
Attackers are impersonating well-known brands such as Netflix, Coca-Cola, and FIFA to lure marketing and recruiting professionals into fake interview processes that deliver malware and harvest enterprise credentials.
https://www.malwarebytes.com/blog/scams/2026/07/fake-netflix-coca-cola-and-fifa-job-scams-target-marketers

newsletter signup

Our goal? To deliver the best cybersecurity insights you can read inΒ five minutes or lessΒ β€” straight to your inbox, once a week.

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

newsletter signup

Our goal? To deliver the best cybersecurity insights you can read inΒ five minutes or lessΒ β€” straight to your inbox, once a week.

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.