New Whitepaper: Exploiting Cellular-based IoT Devices
2026-03-25T07:23:49Z•768ee10b261e67afdf311b0cad48381c23995a603a7fdd19dd3686d985d2b538
AT-commandsBSI-C5CNAPPCVECitrixGainsightIoTMetasploitNetScalerS3-enumerationSAMLSOCKS5UARTUSBXSSboard-reportingcellular-modemscloud-securityexploitationhardware-tamperinginformation-disclosureout-of-bounds-readrisk-management
What happened
This collection of Rapid7 posts covers multiple security topics: a new whitepaper demonstrating how attackers with physical access can weaponize cellular-based IoT devices (manipulating USB/UART/inter-chip interfaces, replacing hosts, and using AT-command-based tools for port scanning, SOCKS5 proxying, S3 enumeration, and Metasploit integration); a critical Citrix NetScaler advisory (CVE-2026-3055) for an unauthenticated out-of-bounds read affecting SAML IdP configurations (CVSS 9.3); Metasploit framework updates adding exploit modules (including CVE-2026-29058 and CVE-2025-64328); fixed Gains
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- rapid7_blog
- Record identifier
- 768ee10b261e67afdf311b0cad48381c23995a603a7fdd19dd3686d985d2b538
- Enrichment time
- 2026-03-25T07:23:49Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.