HomeSecurityCitrix: Error allows hackers to "enter" the Ministry of Defense!

Citrix: Bug allows hackers to "enter" the Ministry of Defense!

Citrix has revealed a flaw that could be used by hackers to gain access to the Australian Department of Defense. Specifically, according to Rachel Noble , who recently became director of the Australian Signals Directorate (ASD), a Citrix flaw, which was revealed over Christmas, could be used by hackers to gain access to the Australian Department of Defense database Rachel Noble ASD for citrix error vs Australian Department of Defense

On January 24, there were concerns that the Department of Defense and the DFRN (Defense Forces Recovery Network) might be vulnerable to potential malicious activity due to a bug in Citrix. Noble added that ASD believed no data was compromised, but attempts were made to access the network where the bug occurred. Noble also said that this is a bug that has affected companies worldwide, so it was not the first time something like this has happened.  ASD for Citrix error vs Australian Department of Defense

As reported by the ABC a few days ago, the DFRN was offline and quarantined for 10 days from February 2 to February 12. A source told the ABC that the bug was discovered before Christmas and emergency meetings were being held twice a day to address the issue. The database was run by ManpowerGroup.

A globally used Citrix flaw was revealed on December 25, 2019, and a huge number of hackers were trying to exploit it through a large number of companies and government agencies.citrix error vs australian department of defense

Additionally, Defense Department officials said the database was full of personal information, including health information, medical tests, and psychological information.

The CIO , Stephen Pearson, said the network in question is an external network and not part of the defense network. Pearson said he was not aware of whether DXC, a service provider to ManpowerGroup, ever applied the patches issued by Citrix on Jan. 20. Finally, Noble previously said it estimates that since July 1, 2019, ASD has received an average of five incident reports per day and one cybercrime every 10 minutes.

 

📧
Subscribe to the SecNews Newsletter

The most important Security & Technology news in your Inbox.

SEARCH

FOLLOW US

📧
Newsletter SecNews
The most important Security & Technology news in your inbox.

LIVE NEWS