The U.S. CISA has added four vulnerabilities to its KEV catalog, with active exploitation noted for CVE-2019-9621 related to Earth Lusca. This highlights ongoing threats to various systems, including Citrix NetScaler ADC, which is currently targeted in the wild. #EarthLusca #CVE2019621 #CitrixBleed2
Keypoints
- CISA has listed four security flaws in its KEV catalog, with some actively exploited in the wild.
- The vulnerabilities include buffer overflow, command injection, path traversal, and SSRF issues.
- Earth Lusca, a China-linked group, is known to exploit CVE-2019-9621 to deploy web shells and Cobalt Strike.
- Citrix NetScaler ADC vulnerabilities CVE-2025-5777 and CVE-2025-6543 are actively exploited, risking sensitive data exposure.
- FCEB agencies are advised to apply updates by July 28, 2025, to protect their networks from these threats.
Read More: https://thehackernews.com/2025/07/cisa-adds-four-critical-vulnerabilities.html