HTC Global Services hit by AlphV/BlackCat. Entry via Caretech, one of their business units. Unpatched for #CitrixBleed as of today. #threatintel
If anybody knows anybody at HTC get them to take the Netscaler offline, BlackCat are still logged into it.
AlphV are one of 6 ransomware groups I am tracking using #CitrixBleed currently, along with 2 APTs.
HTC Global Services aka HTC Inc aka Caretech, a healthcare MSP with 11k staff and access to hospitals across the US are still dealing with a ransomware group. They failed to patch for #CitrixBleed. #threatintel
@GossiTheDog ...and a partridge in a pear tree?
@GossiTheDog can I ask a little bit of a dumb question? What methods and tools do you use to track groups like this?
@GossiTheDog any good sources explaining what #citrixbleed is and how it works?
@GossiTheDog the funny thing is that the whole US DoD and even the whole Walmart network relies on Netscaler/Citrix. Sad times...
@GossiTheDog it’s ok. They only have 3% battery ;)