This week’s cyber news highlighted actively exploited flaws in Citrix NetScaler ADC, FortiMail, and PaperCut, alongside new abuse of weak defaults, exposed repos, and simple phishing paths. It also showed how groups like Star Blizzard, ShinyHunters, KillSec, and RatHat are combining automation, AI, and stealth to make attacks faster and harder to detect. #Citrix #NetScalerADC #NetScalerGateway #FortiMail #PaperCut #StarBlizzard #ShinyHunters #KillSec #RatHat #CosmicPulse #AdaptixC2
Keypoints
- Citrix warned that CVE-2026-88779 in NetScaler ADC and Gateway is being exploited in targeted zero-day attacks.
- CISA confirmed active exploitation of a critical FortiMail flaw that can let attackers write arbitrary files.
- Law enforcement arrested members linked to ShinyHunters and a 16-year-old suspected KillSec leader.
- Star Blizzard used fake email invites and RedFlick to deploy the CosmicPulse backdoor.
- AI and exposed workflows created new risks, from PixelLeak screenshot leaks to RatHat using Gemini for victim sorting.
Read More: https://thehackernews.com/2026/10/weekly-recap-netscaler-and-fortimail-0.html