F5 is an organization tracked by ThreatCluster, appearing in 23 threat clusters built from 33 intelligence report mentions.
F5 is a organization tracked across 23 threat clusters and 33 intelligence report mentions on ThreatCluster. First observed October 23, 2025; most recent activity June 19, 2026.
On June 17, 2026, F5 released emergency patches for two critical vulnerabilities in NGINX, CVE-2026-42530 and CVE-2026-42055. These vulnerabilities affect NGINX Open Source, NGINX Plus, and related products, allowing…
Check Point Software Technologies disclosed a critical authentication bypass vulnerability (CVE-2026-50751) affecting its Remote Access VPN and Mobile Access products, with exploitation confirmed since May 7, 2026. The…
F5 has disclosed a high-severity vulnerability, tracked as CVE-2026-32647, affecting both NGINX Plus and NGINX Open Source. This flaw allows attackers to execute arbitrary code or trigger a denial-of-service (DoS)…
F5 disclosed a security breach affecting its BIG-IP product line, where a state-sponsored threat actor gained unauthorized access to the company's internal engineering and product development environments. The attackers…
A significant supply chain attack has compromised Salesforce-stored data from more than 200 companies through applications published by Gainsight. Salesforce confirmed unauthorized access to customer data and is…
A security breach of F5's BIG-IP product line has been disclosed, revealing that a state-sponsored threat actor gained unauthorized access to F5's internal engineering and product development environments. The attackers…
Chinese hackers, identified as part of the Salt Typhoon operation, have infiltrated at least nine major U.S. communications networks, raising alarms among U.S. policymakers. The operation has been characterized by…
Chinese state-sponsored hackers have maintained long-term access to critical US networks, utilizing Brickstorm malware for data theft and infiltration. The campaign, which has affected at least eight government services…
Pentera Labs has reported that threat actors are exploiting misconfigured cloud training applications used by Fortune 500 companies and cybersecurity vendors. These vulnerabilities allow attackers to gain unauthorized…
The Congressional Budget Office (CBO) confirmed it was hacked, potentially exposing sensitive government data. The agency has implemented new security measures and is investigating the incident, which may involve…
F5 is an organization tracked by ThreatCluster, appearing in 23 threat clusters built from 33 intelligence report mentions.
The most recent intelligence report mentioning F5 on ThreatCluster is dated June 19, 2026. Activity was first observed October 23, 2025, giving a tracked span from then to June 19, 2026.
Across ThreatCluster reporting, F5 most frequently co-occurs with Apt38, BlueNoroff, Salt Typhoon, Sapphire Sleet, Scattered Spider, among 12 tracked related entities.
The most significant recent cluster is “F5 Issues Critical Patches for NGINX Vulnerabilities Allowing Remote Code Execution” (24 articles · Updated June 18, 2026). F5 appears across 23 threat clusters in total, listed above with sources.
F5 appears in 33 intelligence report mentions across 23 deduplicated threat clusters, aggregated from 17,000+ monitored sources.