Remove index.html
article thumbnail

Large-scale Citrix NetScaler Gateway credential harvesting campaign exploits CVE-2023-3519

Security Affairs

The attackers exploited the flaw to inject a malicious Javascript into the device “index.html” login page. Then the attackers appended custom HTML code to “index.html” which references a remote JavaScript file hosted on attacker-controlled infrastructure. ” reads the report published by IBM X-Force.