Skip to main content
Massachusetts Senior Care Association Logo

Masthead

  • Member Login
  • Join Mass Senior Care
  • Contact
  • Search
    Advanced Search

Main navigation

  • About Us
    • Learn More About MSCA
    • Board of Directors
    • Staff Directory
    • Newsroom
      • Mass Senior Care Press Releases
      • Mass Senior Care in the News
  • Education & Events
    • Webinars / Education Programs
    • Education and Seminar Policies and Procedures
    • 2025 Spring Conference and Trade Show
    • 2025 Spring Conference & Trade Show - Exhibitors and Sponsors
    • 2025 Leadership Conference - Attendee Registration & Sponsorship Opportunities
    • Save the Date for Mass Senior Care's 2025 Annual Meeting & Trade Show
  • Member Resources
    • E-News Updates
      • Past Newsletters
    • Member Updates
    • Preferred Vendors
    • Quality & Wellness Initiatives
      • Fight the Flu Campaign
      • The Massachusetts Healthcare Safety and Quality Consortium
      • Sepsis Smart
      • Care Transitions
      • Culture Change
      • End of Life Care
      • Falls Prevention
      • Reducing Off-Label Use of Antipsychotics
    • Regulatory
    • Policy Committees
    • Other Resources
      • MassMAP (LTC Mutual Aid Plan)
      • Activities Professional (MassCAP)
      • AHCA/NCAL Bookstore
  • Advocacy
    • Advocacy Center
    • Respect & Protect Nursing Home Caregiver Wages
  • Careers
    • Career Opportunities
    • RCA Training Course
    • Care For The Aging
    • Find a Job
    • Members Post a Job
  • For Consumers
    • Care Options
    • Find A Facility
    • How to Choose a Facility
    • Health Care Planning
    • Our Senior Care
  • Foundation

HHS Issues Important Cybersecurity Notice for Health Care Operators

Breadcrumb

  • Home
  • Member Resources
  • E-News Updates
  • HHS Issues Important Cybersecurity Notice for Health Care Operators
December 7, 2023
US HHS

The Department of Health and Human Services (HHS) Health Sector Cybersecurity Coordination Center has released a notice strongly encouraging health care organizations to upgrade their devices due to a vulnerability. Known as “Citrix Bleed,” this vulnerability has been ongoing since August 2023 and could allow hackers to access private health care information by bypassing passwords and multifactor authentication. 

Those systems vulnerable to Citrix Bleed include NetScaler ADC (formerly Citrix ADC) and NetScaler Gateway (formerly Citrix Gateway). Versions include:

  1. NetScaler ADC and NetScaler Gateway 14.1 before 14.1-8.50 
  2. NetScaler ADC and NetScaler Gateway 13.1 before 13.1-49.15 
  3. NetScaler ADC and NetScaler Gateway 13.0 before 13.0-92.19 
  4. NetScaler ADC and NetScaler Gateway version 12.1 (EOL) 
  5. NetScaler ADC 13.1FIPS before 13.1-37.163  
  6. NetScaler ADC 12.1-FIPS before 12.1-55.300 
  7. NetScaler ADC 12.1-NDcPP before 12.1-55.300 

Citrix released a patch for this vulnerability in early October, but these compromised sessions will still be active after a patch has been implemented. Administrators should follow Citrix’s guidance to upgrade their devices and remove any active or persistent sessions with the following commands: 

  1. kill aaa session -all  
  2. kill icaconnection -all  
  3. kill rdp connection -all  
  4. kill pcoipConnection -all  
  5. clear lb persistentSessions 

Additional recommended actions for investigating any potential Citrix Bleed exploits have been provided by NetScaler. Further technical details, threat activity, and indicators of compromise can be obtained here and here. Users and administrators are strongly encouraged to review these recommended actions and upgrade devices to prevent serious damage.

Upcoming Education & Events

calendar icon
Jun
16

June 16 at 2:00 pm

2025 Leadership Conference

Nov
13

November 13 at 9:00 am

Save the Date for Mass Senior Care's 2025 Annual Meeting & Trade Show

View Entire Calendar

Find a Facility

A house icon
Submit Search

Recent News

newspaper icon
May 20, 2025
May 20, 2025
May 19, 2025
May 19, 2025
View All Recent News

Find a Preferred Vendor

msca logo

Footer menu

  • Contact
  • Privacy Policy
  • Terms & Conditions

State Affiliate Of

American Health Care Association Logo
National Center for Assisted Living Logo