AI Orchestration Reaches Session Hijacking on NetScaler

A NetScaler compromise now means more than access to the appliance. If an attacker can read session cookies from memory, they can step into already authenticated users and move into the apps behind the gateway without stealing passwords first. Unit 42 says the operator behind the campaign, tracked as knaithe and KnYuan, used DeepSeek and Hermes Agent to automate scanning and exploit attempts with very little human oversight. That activity has now progressed from exposed AI-agent artifacts and failed probes to three confirmed NetScaler intrusions, where the value was the session state held in memory rather than a crashed device. The lesson is broader than Citrix. Any reverse proxy or identity appliance that holds live sessions can become an account-takeover point if it is compromised, because patching the flaw does not revoke the cookies already copied out of memory.

Part of the PlainSec briefing for 2026-08-03

Editions

Sources