
- A legitimate red teaming tool called HexStrike-AI is drawing the attention of the wrong crowd
- Researchers are seeing "chatter" about the tool being leveraged to exploit known Citrix flaws
- The patching window for system administrators keeps shrinking
Cybercriminals are using a legitimate red teaming tool to automate the exploitation of n-day vulnerabilities, reducing the time businesses have to fix flaws from days to literal minutes.