<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Hacking CITRIX &#8211; the forceful way</title>
	<atom:link href="http://www.gnucitizen.org/blog/hacking-citrix-the-forceful-way/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.gnucitizen.org/blog/hacking-citrix-the-forceful-way/</link>
	<description>Information Security Think Tank</description>
	<lastBuildDate>Sat, 02 Feb 2013 17:50:40 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.4.1</generator>
	<item>
		<title>By: infoz</title>
		<link>http://www.gnucitizen.org/blog/hacking-citrix-the-forceful-way/comment-page-1/#comment-129673</link>
		<dc:creator>infoz</dc:creator>
		<pubDate>Sun, 23 Jan 2011 00:19:06 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/hacking-citrix-the-forceful-way#comment-129673</guid>
		<description>What did you do to get the scripts working in XP? They execute fine from cmd, wscript is installed, .net, etc.. but they never launch the Citrix client (which is also installed) for enum, connect or bforce. I can launch an .ica file to the target server with no issues however running the .js files never launch the client. Any help is appreciated!</description>
		<content:encoded><![CDATA[<p>What did you do to get the scripts working in XP? They execute fine from cmd, wscript is installed, .net, etc.. but they never launch the Citrix client (which is also installed) for enum, connect or bforce. I can launch an .ica file to the target server with no issues however running the .js files never launch the client. Any help is appreciated!</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: nod32å‡çº§id &#187; Hacking Citrix</title>
		<link>http://www.gnucitizen.org/blog/hacking-citrix-the-forceful-way/comment-page-1/#comment-128440</link>
		<dc:creator>nod32å‡çº§id &#187; Hacking Citrix</dc:creator>
		<pubDate>Thu, 01 Apr 2010 12:40:05 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/hacking-citrix-the-forceful-way#comment-128440</guid>
		<description>[...] http://www.gnucitizen.org/blog/citrix-owning-the-legitimate-backdoor/http://www.gnucitizen.org/blog/hacking-citrix-the-forceful-way/ [...]</description>
		<content:encoded><![CDATA[<p>[...] <a href="http://www.gnucitizen.org/blog/citrix-owning-the-legitimate-backdoor/http://www.gnucitizen.org/blog/hacking-citrix-the-forceful-way/" rel="nofollow">http://www.gnucitizen.org/blog.....ceful-way/</a> [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: pdp</title>
		<link>http://www.gnucitizen.org/blog/hacking-citrix-the-forceful-way/comment-page-1/#comment-125575</link>
		<dc:creator>pdp</dc:creator>
		<pubDate>Sun, 25 Jan 2009 07:50:59 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/hacking-citrix-the-forceful-way#comment-125575</guid>
		<description>back again :) still moving infrastructures...</description>
		<content:encoded><![CDATA[<p>back again :) still moving infrastructures&#8230;</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: jeff</title>
		<link>http://www.gnucitizen.org/blog/hacking-citrix-the-forceful-way/comment-page-1/#comment-125302</link>
		<dc:creator>jeff</dc:creator>
		<pubDate>Wed, 14 Jan 2009 19:59:58 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/hacking-citrix-the-forceful-way#comment-125302</guid>
		<description>Gone again, the links...</description>
		<content:encoded><![CDATA[<p>Gone again, the links&#8230;</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Hacking Citrix</title>
		<link>http://www.gnucitizen.org/blog/hacking-citrix-the-forceful-way/comment-page-1/#comment-122453</link>
		<dc:creator>Hacking Citrix</dc:creator>
		<pubDate>Thu, 05 Jun 2008 14:38:22 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/hacking-citrix-the-forceful-way#comment-122453</guid>
		<description>[...] A more recent reference to hacking Citrix is from GNUCITIZEN and can be found here [...]</description>
		<content:encoded><![CDATA[<p>[...] A more recent reference to hacking Citrix is from GNUCITIZEN and can be found here [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: xyyzy</title>
		<link>http://www.gnucitizen.org/blog/hacking-citrix-the-forceful-way/comment-page-1/#comment-58769</link>
		<dc:creator>xyyzy</dc:creator>
		<pubDate>Tue, 16 Oct 2007 13:17:32 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/hacking-citrix-the-forceful-way#comment-58769</guid>
		<description>thanks pdp, found them</description>
		<content:encoded><![CDATA[<p>thanks pdp, found them</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: pdp</title>
		<link>http://www.gnucitizen.org/blog/hacking-citrix-the-forceful-way/comment-page-1/#comment-58733</link>
		<dc:creator>pdp</dc:creator>
		<pubDate>Tue, 16 Oct 2007 10:44:45 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/hacking-citrix-the-forceful-way#comment-58733</guid>
		<description>check the bottom of the post</description>
		<content:encoded><![CDATA[<p>check the bottom of the post</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: xyyzy</title>
		<link>http://www.gnucitizen.org/blog/hacking-citrix-the-forceful-way/comment-page-1/#comment-58732</link>
		<dc:creator>xyyzy</dc:creator>
		<pubDate>Tue, 16 Oct 2007 10:42:07 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/hacking-citrix-the-forceful-way#comment-58732</guid>
		<description>Where are the videos? seems youtube has removed them.</description>
		<content:encoded><![CDATA[<p>Where are the videos? seems youtube has removed them.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: curious mind</title>
		<link>http://www.gnucitizen.org/blog/hacking-citrix-the-forceful-way/comment-page-1/#comment-58700</link>
		<dc:creator>curious mind</dc:creator>
		<pubDate>Tue, 16 Oct 2007 07:50:06 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/hacking-citrix-the-forceful-way#comment-58700</guid>
		<description>pdp, I totally agree...applications without authentication is asking for trouble..but as you showed that even with authentication you&#039;re not really safe that&#039;s why I hope somebody can answer my  questions..</description>
		<content:encoded><![CDATA[<p>pdp, I totally agree&#8230;applications without authentication is asking for trouble..but as you showed that even with authentication you&#8217;re not really safe that&#8217;s why I hope somebody can answer my  questions..</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: pdp</title>
		<link>http://www.gnucitizen.org/blog/hacking-citrix-the-forceful-way/comment-page-1/#comment-58688</link>
		<dc:creator>pdp</dc:creator>
		<pubDate>Tue, 16 Oct 2007 06:44:29 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/hacking-citrix-the-forceful-way#comment-58688</guid>
		<description>curious mind, I have no idea how CITRIX is shipped but I believe that you are on the right track. However, it is up to the administrator to export applications that does not require authentication. In case your ICA is in the DMZ and you have one of these application hanging out in there, then you are in a big trouble. Unfortunately, this is what I see most of the times.</description>
		<content:encoded><![CDATA[<p>curious mind, I have no idea how CITRIX is shipped but I believe that you are on the right track. However, it is up to the administrator to export applications that does not require authentication. In case your ICA is in the DMZ and you have one of these application hanging out in there, then you are in a big trouble. Unfortunately, this is what I see most of the times.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: curious mind</title>
		<link>http://www.gnucitizen.org/blog/hacking-citrix-the-forceful-way/comment-page-1/#comment-58682</link>
		<dc:creator>curious mind</dc:creator>
		<pubDate>Tue, 16 Oct 2007 06:22:29 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/hacking-citrix-the-forceful-way#comment-58682</guid>
		<description>I&#039;m wondering what FREE features Citrix has for deploying apps to the internet in a secure manner. The only thing I could find was the Citrix Secure Gateway 3.0 (is this still supported or maintained?) from which the admin guide and checklist is no longer avaiable so forget about the documentation. 

So as it would seem, you maybe required to purchase a Citrix Access Gateway to secure your Citrix environment am I correct..? If so, this would mean that making Citrix apps available across the web would not be secure out of the box without buying additional hardware.
This is not a statement but more a question I have...</description>
		<content:encoded><![CDATA[<p>I&#8217;m wondering what FREE features Citrix has for deploying apps to the internet in a secure manner. The only thing I could find was the Citrix Secure Gateway 3.0 (is this still supported or maintained?) from which the admin guide and checklist is no longer avaiable so forget about the documentation. </p>
<p>So as it would seem, you maybe required to purchase a Citrix Access Gateway to secure your Citrix environment am I correct..? If so, this would mean that making Citrix apps available across the web would not be secure out of the box without buying additional hardware.<br />
This is not a statement but more a question I have&#8230;</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Citrix Internet Gateways - Critical need to lock these down - Harry Waldron - My IT Forums Blog</title>
		<link>http://www.gnucitizen.org/blog/hacking-citrix-the-forceful-way/comment-page-1/#comment-57575</link>
		<dc:creator>Citrix Internet Gateways - Critical need to lock these down - Harry Waldron - My IT Forums Blog</dc:creator>
		<pubDate>Fri, 12 Oct 2007 13:41:53 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/hacking-citrix-the-forceful-way#comment-57575</guid>
		<description>[...] &#160;&#160;Hacking CITRIX - the forceful way&#160;http://www.gnucitizen.org/blog/hacking-citrix-the-forceful-way/ &#160;&#160;Citrix Security Best Practices&#160;http://www.thin-world.com/nfuse.htm [...]</description>
		<content:encoded><![CDATA[<p>[...] &nbsp;&nbsp;Hacking CITRIX &#8211; the forceful way&nbsp;<a href="http://www.gnucitizen.org/blog/hacking-citrix-the-forceful-way/" rel="nofollow">http://www.gnucitizen.org/blog.....ceful-way/</a> &nbsp;&nbsp;Citrix Security Best Practices&nbsp;<a href="http://www.thin-world.com/nfuse.htm" rel="nofollow">http://www.thin-world.com/nfuse.htm</a> [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: pdp</title>
		<link>http://www.gnucitizen.org/blog/hacking-citrix-the-forceful-way/comment-page-1/#comment-57525</link>
		<dc:creator>pdp</dc:creator>
		<pubDate>Fri, 12 Oct 2007 10:57:26 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/hacking-citrix-the-forceful-way#comment-57525</guid>
		<description>Jonathan, thanks. I am not very sure. I guess it has something to do with the CITRIX logo, which appears on the screen when a connection is established.</description>
		<content:encoded><![CDATA[<p>Jonathan, thanks. I am not very sure. I guess it has something to do with the CITRIX logo, which appears on the screen when a connection is established.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Jonathan</title>
		<link>http://www.gnucitizen.org/blog/hacking-citrix-the-forceful-way/comment-page-1/#comment-57518</link>
		<dc:creator>Jonathan</dc:creator>
		<pubDate>Fri, 12 Oct 2007 10:25:38 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/hacking-citrix-the-forceful-way#comment-57518</guid>
		<description>It&#039;s strange that Citrix should be able to do this. Does your video:

1. breach the copyright of Citrix, or
2. describe a method for illegally circumventing copyright protection?

If not, then perhaps you could file a &quot;counter-take-down&quot; notice to YouTube, as described here: http://www.youtube.com/t/dmca_policy.

This approach was famously used by Christopher Knight:
http://theknightshift.blogspot.com/2007/08/viacom-hits-me-with-copyright.html

Keep on hacking!
Jonathan</description>
		<content:encoded><![CDATA[<p>It&#8217;s strange that Citrix should be able to do this. Does your video:</p>
<p>1. breach the copyright of Citrix, or<br />
2. describe a method for illegally circumventing copyright protection?</p>
<p>If not, then perhaps you could file a &#8220;counter-take-down&#8221; notice to YouTube, as described here: <a href="http://www.youtube.com/t/dmca_policy" rel="nofollow">http://www.youtube.com/t/dmca_policy</a>.</p>
<p>This approach was famously used by Christopher Knight:<br />
<a href="http://theknightshift.blogspot.com/2007/08/viacom-hits-me-with-copyright.html" rel="nofollow">http://theknightshift.blogspot.....right.html</a></p>
<p>Keep on hacking!<br />
Jonathan</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: pdp</title>
		<link>http://www.gnucitizen.org/blog/hacking-citrix-the-forceful-way/comment-page-1/#comment-57502</link>
		<dc:creator>pdp</dc:creator>
		<pubDate>Fri, 12 Oct 2007 08:41:02 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/hacking-citrix-the-forceful-way#comment-57502</guid>
		<description>Apparently CITRIX has removed the YouTube videos due to a copyright violation. This is strange and the same time not the right way to handle situations like this.</description>
		<content:encoded><![CDATA[<p>Apparently CITRIX has removed the YouTube videos due to a copyright violation. This is strange and the same time not the right way to handle situations like this.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: pdp</title>
		<link>http://www.gnucitizen.org/blog/hacking-citrix-the-forceful-way/comment-page-1/#comment-57269</link>
		<dc:creator>pdp</dc:creator>
		<pubDate>Thu, 11 Oct 2007 18:41:36 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/hacking-citrix-the-forceful-way#comment-57269</guid>
		<description>RX8volution, I forgot to include that. Give me some time and I will come with an updated script, or you can do that yourself if you want to.</description>
		<content:encoded><![CDATA[<p>RX8volution, I forgot to include that. Give me some time and I will come with an updated script, or you can do that yourself if you want to.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: RX8volution</title>
		<link>http://www.gnucitizen.org/blog/hacking-citrix-the-forceful-way/comment-page-1/#comment-57245</link>
		<dc:creator>RX8volution</dc:creator>
		<pubDate>Thu, 11 Oct 2007 16:54:40 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/hacking-citrix-the-forceful-way#comment-57245</guid>
		<description>pdp : How do you account for domains?  I am working on password &quot;grinding&quot; or brute-force... and don&#039;t quite get how to append the Domain name into your script... would be a nice pen-test tool...</description>
		<content:encoded><![CDATA[<p>pdp : How do you account for domains?  I am working on password &#8220;grinding&#8221; or brute-force&#8230; and don&#8217;t quite get how to append the Domain name into your script&#8230; would be a nice pen-test tool&#8230;</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: pdp</title>
		<link>http://www.gnucitizen.org/blog/hacking-citrix-the-forceful-way/comment-page-1/#comment-57048</link>
		<dc:creator>pdp</dc:creator>
		<pubDate>Wed, 10 Oct 2007 18:28:49 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/hacking-citrix-the-forceful-way#comment-57048</guid>
		<description>Anthony D., yes you are right. The reason I came up with the script is mainly because I wasn&#039;t aware of any other CITRIX authentication bruteforcer.</description>
		<content:encoded><![CDATA[<p>Anthony D., yes you are right. The reason I came up with the script is mainly because I wasn&#8217;t aware of any other CITRIX authentication bruteforcer.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Anthony D.</title>
		<link>http://www.gnucitizen.org/blog/hacking-citrix-the-forceful-way/comment-page-1/#comment-57047</link>
		<dc:creator>Anthony D.</dc:creator>
		<pubDate>Wed, 10 Oct 2007 18:26:14 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/hacking-citrix-the-forceful-way#comment-57047</guid>
		<description>You should note that you are demonstrating exploiting a poorly implemented security model. When implemented correctly using existing Citrix security features and Microsoft Security Features your attacks would not work at all.

This was an attack against a poorly implemented Citrix environment.

Nice work either way!</description>
		<content:encoded><![CDATA[<p>You should note that you are demonstrating exploiting a poorly implemented security model. When implemented correctly using existing Citrix security features and Microsoft Security Features your attacks would not work at all.</p>
<p>This was an attack against a poorly implemented Citrix environment.</p>
<p>Nice work either way!</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: radi</title>
		<link>http://www.gnucitizen.org/blog/hacking-citrix-the-forceful-way/comment-page-1/#comment-56944</link>
		<dc:creator>radi</dc:creator>
		<pubDate>Wed, 10 Oct 2007 07:21:28 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/hacking-citrix-the-forceful-way#comment-56944</guid>
		<description>*hides head in shame* oopps.... sorry about that guys!!! :) my bad i should have read the other article more carefully.....</description>
		<content:encoded><![CDATA[<p>*hides head in shame* oopps&#8230;. sorry about that guys!!! :) my bad i should have read the other article more carefully&#8230;..</p>
]]></content:encoded>
	</item>
</channel>
</rss>
