news.volyx.in

Hackers Were Inside Citrix for Five Months (krebsonsecurity.com)

520 points by feross · 2425 days ago · 232 comments on HN

Article summary

Citrix Systems, a networking software giant, has disclosed that malicious hackers were inside its networks for five months between 2018 and 2019, accessing personal and financial data on employees, contractors, and others. The hackers gained access using a technique called password spraying, which attempts to access a large number of employee accounts using common passwords. The breach was initially disclosed in March 2019, but new details have emerged, including the duration of the breach and the types of data accessed. The incident has raised concerns about the security of Citrix's products and services, which are used by hundreds of thousands of clients worldwide.

Main themes

  • Citrix breach
  • password security
  • FBI involvement
  • cyber threats
  • security protocols
  • data protection
  • corporate responsibility

What commenters say

  • The breach is a clear example of gross incompetence and lack of security measures by Citrix.
  • The FBI's involvement in alerting Citrix to the breach is not uncommon, as the agency often notifies companies of potential security threats.
  • The use of password spraying to gain access to Citrix's network highlights the need for stronger password security measures.
  • The breach may be more extensive than initially disclosed, with potential impacts on Citrix's clients and customers.
  • The incident raises questions about the effectiveness of Citrix's security protocols and the potential for similar breaches in the future.
  • The company's response to the breach, including the delay in disclosing details, has been criticized as inadequate.
  • The breach is a reminder of the importance of robust security measures, including regular password updates and multi-factor authentication.
  • The incident has sparked debate about the role of the FBI in monitoring and responding to cyber threats, with some arguing that the agency's involvement is necessary to prevent and respond to breaches.