New Whitepaper: Exploiting Cellular-based IoT Devices

2026-03-25T07:23:49Z768ee10b261e67afdf311b0cad48381c23995a603a7fdd19dd3686d985d2b538
AT-commandsBSI-C5CNAPPCVECitrixGainsightIoTMetasploitNetScalerS3-enumerationSAMLSOCKS5UARTUSBXSSboard-reportingcellular-modemscloud-securityexploitationhardware-tamperinginformation-disclosureout-of-bounds-readrisk-management

What happened

This collection of Rapid7 posts covers multiple security topics: a new whitepaper demonstrating how attackers with physical access can weaponize cellular-based IoT devices (manipulating USB/UART/inter-chip interfaces, replacing hosts, and using AT-command-based tools for port scanning, SOCKS5 proxying, S3 enumeration, and Metasploit integration); a critical Citrix NetScaler advisory (CVE-2026-3055) for an unauthenticated out-of-bounds read affecting SAML IdP configurations (CVSS 9.3); Metasploit framework updates adding exploit modules (including CVE-2026-29058 and CVE-2025-64328); fixed Gains

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
rapid7_blog
Record identifier
768ee10b261e67afdf311b0cad48381c23995a603a7fdd19dd3686d985d2b538
Enrichment time
2026-03-25T07:23:49Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.