Skip to main content
Massachusetts Senior Care Association Logo

Masthead

  • Member Login
  • Join Mass Senior Care
  • Contact
  • Search
    Advanced Search

Main navigation

  • About Us
    • Learn More About MSCA
    • Board of Directors
    • Staff Directory
    • Newsroom
      • Mass Senior Care Press Releases
      • Mass Senior Care in the News
  • Education & Events
    • Webinars / Education Programs
    • Education and Seminar Policies and Procedures
    • 2025 Spring Conference and Trade Show
    • 2025 Spring Conference & Trade Show - Exhibitors and Sponsors
  • Member Resources
    • E-News Updates
      • Past Newsletters
    • Member Updates
    • Preferred Vendors
    • Coronavirus Information and Resources
    • COVID-19 Vaccine
    • Quality & Wellness Initiatives
      • Fight the Flu Campaign
      • The Massachusetts Healthcare Safety and Quality Consortium
      • Sepsis Smart
      • Care Transitions
      • Culture Change
      • End of Life Care
      • Falls Prevention
      • Reducing Off-Label Use of Antipsychotics
    • Labor and Workforce
    • Regulatory
    • Reimbursement
    • Policy Committees
    • Other Resources
      • MassMAP (LTC Mutual Aid Plan)
      • Activities Professional (MassCAP)
      • AHCA/NCAL Bookstore
  • Advocacy
    • Advocacy Center
    • Legislative Priorities
    • Respect & Protect Nursing Home Caregiver Wages
  • Careers
    • Career Opportunities
    • RCA Training Course
    • Care For The Aging
    • Find a Job
    • Members Post a Job
  • For Consumers
    • Care Options
    • Find A Facility
    • How to Choose a Facility
    • Health Care Planning
    • Our Senior Care
  • Foundation

HHS Issues Important Cybersecurity Notice for Health Care Operators

Breadcrumb

  • Home
  • Member Resources
  • E-News Updates
  • HHS Issues Important Cybersecurity Notice for Health Care Operators
December 7, 2023
US HHS

The Department of Health and Human Services (HHS) Health Sector Cybersecurity Coordination Center has released a notice strongly encouraging health care organizations to upgrade their devices due to a vulnerability. Known as “Citrix Bleed,” this vulnerability has been ongoing since August 2023 and could allow hackers to access private health care information by bypassing passwords and multifactor authentication. 

Those systems vulnerable to Citrix Bleed include NetScaler ADC (formerly Citrix ADC) and NetScaler Gateway (formerly Citrix Gateway). Versions include:

  1. NetScaler ADC and NetScaler Gateway 14.1 before 14.1-8.50 
  2. NetScaler ADC and NetScaler Gateway 13.1 before 13.1-49.15 
  3. NetScaler ADC and NetScaler Gateway 13.0 before 13.0-92.19 
  4. NetScaler ADC and NetScaler Gateway version 12.1 (EOL) 
  5. NetScaler ADC 13.1FIPS before 13.1-37.163  
  6. NetScaler ADC 12.1-FIPS before 12.1-55.300 
  7. NetScaler ADC 12.1-NDcPP before 12.1-55.300 

Citrix released a patch for this vulnerability in early October, but these compromised sessions will still be active after a patch has been implemented. Administrators should follow Citrix’s guidance to upgrade their devices and remove any active or persistent sessions with the following commands: 

  1. kill aaa session -all  
  2. kill icaconnection -all  
  3. kill rdp connection -all  
  4. kill pcoipConnection -all  
  5. clear lb persistentSessions 

Additional recommended actions for investigating any potential Citrix Bleed exploits have been provided by NetScaler. Further technical details, threat activity, and indicators of compromise can be obtained here and here. Users and administrators are strongly encouraged to review these recommended actions and upgrade devices to prevent serious damage.

Find a Facility

A house icon
Submit Search

Recent News

newspaper icon
March 14, 2025
Sponsor and Exhibitor Opportunities are Available for 2025 Spring Conference & Trade Show
March 14, 2025
Grow Your RNs’ Gerontological Expertise During the Gero Nurse Prep Spring Sale!
View All Recent News

Find a Preferred Vendor

msca logo

Footer menu

  • Contact
  • Privacy Policy
  • Terms & Conditions

State Affiliate Of

American Health Care Association Logo
National Center for Assisted Living Logo