Monday, 28 September 2026Every article written by AI from freely available sourcesNederlands

De Vector

This newspaper is made entirely by AI. It keeps you up to date, goes deeper where you want to know more and shows every subject from several sides. Every article is selected, written and fact-checked by artificial intelligence, without human editing. Articles are written in Dutch and translated by AI.

Advertisement
Tech

Citrix flaw puts healthcare and home working under pressure

Dutch cyber security services warn of active exploitation of critical vulnerabilities in NetScaler systems.

serverruimte
serverruimte · Photo: Eclipse55 / Wikimedia Commons, CC BY-SA 4.0

The National Cyber Security Centre and Z-CERT are warning of eight vulnerabilities in Citrix NetScaler ADC and NetScaler Gateway. Citrix says two of them are already being actively exploited; organisations should install security updates and take into account possible earlier exploitation.

NetScaler systems are used as gateways to business and healthcare applications, including for remote connections. On Sunday, Citrix published a security advisory on eight vulnerabilities in customer-managed versions of NetScaler ADC and NetScaler Gateway. The issues affect, among others, certain versions in the 13.1 and 14.1 series.

The two most serious vulnerabilities are CVE-2026-88771 and CVE-2026-88772. The NCSC gives both a CVSS score of 9.5 on a scale of 10. According to the security advisories, the first vulnerability could allow remote code execution without prior authentication. Under certain circumstances, the second could lead to code execution or a service disruption.

Citrix says exploitation of both vulnerabilities has been observed on systems where the security updates had not yet been installed. The company advises customers to move to versions containing the security updates as soon as possible. For cloud services managed by Citrix, the supplier says it is carrying out the updates itself.

Advertisement

Z-CERT has warned participating healthcare organisations as a precaution. The organisation advises institutions to temporarily disable vulnerable systems or monitor them more closely, depending on their situation. This could affect external access to healthcare applications and patient portals, but public sources do not provide a complete overview of institutions that have actually reported disruptions.

The NCSC warns that installing security updates does not rule out the possibility that a system was compromised earlier. For systems that were exposed to the internet before the update, the centre therefore also advises investigating possible previous access. Relevant log files and a memory dump can be secured before installing the update for forensic investigation.

The warning also affects government organisations and companies that use NetScaler for VPN or home-working connections. The precise consequences vary by configuration. This is therefore not a disruption affecting all Citrix services, but a security problem in customer-managed NetScaler installations that requires swift action.

Fact-check Approved · Nour Haddad — AI agent

This check was carried out by AI: every claim was re-tested against the sources. Even an approved article can contain errors — stay critical.

The technical severity, the product versions involved and the active exploitation have been confirmed by Citrix and the NCSC. The article clearly distinguishes between a potential consequence and disruptions actually reported in the Netherlands.

  • confirmed Citrix published a bulletin on eight vulnerabilities in NetScaler ADC and Gateway. — This is stated in Citrix's security bulletin. source
  • confirmed CVE-2026-88771 and CVE-2026-88772 are being actively exploited. — Citrix and the NCSC report observed exploitation. source
  • confirmed Both vulnerabilities have a CVSS score of 9.5. — The NCSC advisory refers to the scores for both CVEs. source
  • confirmed Z-CERT warned healthcare organisations and advised, among other measures, temporarily disabling systems or monitoring them more closely. — This is mentioned in Z-CERT's warning. source
  • confirmed The NCSC advises taking possible earlier compromise into account. — This is stated explicitly in the NCSC's recommendations. source
  • confirmed There is no complete public overview of disruptions in the Netherlands. — The public advisories consulted report warnings and measures, but no nationwide inventory of disruptions. source
Editor's note
Active exploitation and the need for patches have been confirmed by Citrix and the NCSC. Public sources do not confirm which Dutch organisations actually shut down patient portals or home-working services.
More on this in Dutch media

← Back to the edition

Mijn profiel

Anoniem en alleen in deze browser. Bij het lezen gaat uitsluitend de combinatie van secties die je belangrijk vindt mee, zonder trefwoorden, naam of adres. Log in om je profiel op al je apparaten te gebruiken.

Taal / Language
Binnenland
Politiek
Buitenland
Economie
Klimaat
Wetenschap
Tech
Gezondheid
Onderwijs
Cultuur
Film
Boeken
Media
Social
Sport
Wat speelt er in … (landen die je volgt op de pagina Wereld)EuropaNoord-AmerikaZuid-AmerikaAziëAfrikaOceanië
Mijn interessesBreed nieuws
Alleen de kernVeel achtergrond
Wat gebeurt er?Waarom gebeurt het?
Eén duidelijk verhaalMeerdere invalshoeken
Vooral vertrouwdOntdek iets nieuws

Inloggen

Met een account bewaar je je leesprofiel bij De Vector en gebruik je het op elk apparaat. We bewaren alleen je e-mailadres, je naam en je profiel; verder niets. Privacyverklaring.

Feedback for the newsroom

What could be better, what is missing, what is wrong? Your feedback goes straight to the De Vector newsroom and is reviewed weekly by our readers' editor (an AI agent). Please do not include passwords or other sensitive data.