Vulnerability Assessment for Citrix XenApp Servers
Monday, 16 November 2009 by Michel Roth
Have you considered all the vulnerabilities that exposing a Citrix XenApp/XenDesktop environment?

You'll undoubtedly have considered putting firewalls in place to protect your network from the chaos of the Internet; you may have put anti-virus software on the servers and locked down some application settings; you may even have implemented some form of two factor authentication - but have you considered all the vunrabilities  that exposing a Citrix XenApp/XenDesktop environment?

Kevin Orrey at vulnerabilityAssessment.co.uk has put together an attack tree for a Citrix MetaFrame/XenApp environment together with a useful list of refences.

Using the tree you can better assess  your environments vunrabilities, review what can be enumerated and exploited and so where you can best concentrate your efforts to ensure you minimise the risk of an attacker using your XenApp/Metaframe server to launch an attack on your network.

Very insightfull. Source: http://www.citrixthings.com/index.php?option=com_content&task=view&id=82&Itemid=32


Related Items:

Citrix Presentation Server Renamed to XenApp Server (28 January 2008)
Windows Server 2008 Terminal Services and Citrix XenApp 5.0 Comparison (7 December 2009)
Virtualization Whitepaper Collection (23 February 2006)
what's new in Citrix Web Interface 5.1.2? (21 August 2009)
Citrix To Launch "Citrix Workflow Studio" (8 February 2008)
CUGtech Autumn 2009 (8 September 2009)
Upcoming XenApp for Windows Server 2008 R2 Tech Preview (17 September 2009)
Comments (0)