Welcome to Littlefish IT Support

My name is James. How can I help you today?

System Admin Information Discovered by Citrix Penetration Testers

System Admin Information Discovered by Citrix Penetration Testers

System Admin Information Discovered by Citrix Penetration Testers

A spreadsheet full of domain admin passwords for every server at a financial services company was discovered by GSS (Global Secure Systems) penetration testers. GSS is a UK IT security systems provider. According to GSS consulting director , the unencrypted information was placed in a folder protected with access rules. They used the access rules to read the information, including passwords, which gave them the system administrator access to every server (several hundred) in the organisation


Citrix users are reported to still leave their companies prone to data infringements even after GSS announced that poor implementations of the thin-client system left holes in the security that surrounded it. Citrix Systems is an American multinational corporation with a focus on software and services specialized in virtualization and remote access software for delivering applications over a network and the Internet.