
CVE-2026-33017, CVE-2026-21858, CVE-2025-68613: Citrix NetScaler — AI-driven server compromise (June 2026)
CVE-2026-33017, CVE-2026-21858, CVE-2025-68613 — Citrix NetScaler
Three high-severity vulnerabilities—CVE-2026-33017, CVE-2026-21858, and CVE-2025-68613—impact Citrix NetScaler and are under active exploitation. These CVEs enable remote attackers to compromise vulnerable servers, with exploitation confirmed in the wild. No CVSS scores are published, but exploitation is ongoing and patching must be prioritized.
Attack Vector
A Chinese-speaking threat actor, tracked as knaithe/KnYuan, leveraged DeepSeek AI and the open-source Hermes Agent to automate attacks against exposed servers. The attacker attempted autonomous exploitation of Langflow and n8n but succeeded manually against over 460 systems, including Citrix NetScaler. The attack chain involves scanning for vulnerable endpoints, deploying Hermes Agent for post-exploitation, and leveraging AI to automate reconnaissance and exploitation steps. While AI-driven attacks failed to compromise targets, manual exploitation of the CVEs resulted in confirmed breaches.
Who Is at Risk
All organizations running Citrix NetScaler appliances are at immediate risk, especially those with unpatched, internet-facing deployments. Over 460 systems were targeted, with confirmed compromises of Citrix NetScaler servers. Enterprises in the Asia-Pacific region are specifically affected, but global exposure is possible.
Patch & Mitigate
- Patch: Apply the latest Citrix NetScaler security updates addressing CVE-2026-33017, CVE-2026-21858, and CVE-2025-68613 immediately. Check Citrix advisories for exact hotfix versions.
- Workaround: Restrict external access to NetScaler management interfaces and disable unnecessary services until patching is complete.
- Detect: Monitor logs for anomalous authentication attempts, unexpected Hermes Agent activity, and outbound connections to unfamiliar IPs. Review for signs of exploitation tied to these CVEs.
MITRE ATT&CK
- TA0001 — Initial Access: The attacker scans for and targets exposed Citrix NetScaler endpoints vulnerable to these CVEs.
- TA0002 — Execution: Hermes Agent is deployed post-exploitation to execute attacker-controlled code.
- TA0040 — Impact: Successful exploitation leads to full server compromise, enabling further lateral movement or data theft.
Source: https://www.hendryadrian.com/hacker-uses-deepseek-ai-to-autonomously-attack-vulnerable-servers/
Start Your 14-Day Free Trial
Get curated cyber intelligence delivered to your inbox every morning at 6 AM. No credit card required.
Get Started Free

