F5 Big-ip is a technology platform tracked across 12 threat clusters and 15 intelligence report mentions on ThreatCluster. First observed October 31, 2025; most recent activity July 22, 2026.
Operation Highland, attributed to the Velvet Ant cyberespionage group, involved a sophisticated attack that began in 2016 and persisted undetected for a decade. The attackers hijacked the authentication stack of a major…
The inaugural July 2026 InfraTrust Pulse report reveals critical vulnerabilities affecting infrastructure devices, particularly SonicWall's SMA1000 and Fortinet's FortiSandbox. SonicWall's CVE-2026-15409 and…
A critical unauthenticated remote code execution vulnerability, tracked as CVE-2025-53521, in F5's BIG-IP Access Policy Manager (APM) systems is currently being exploited. The U.S. Cybersecurity and Infrastructure…
A new malware family named SharkLoader has been discovered, linked to a campaign called StrikeShark, which targets various sectors, including a diplomatic organization in Indonesia. SharkLoader acts as a loader to…
A multi-stage cyber intrusion attack exploited an exposed F5 BIG-IP edge appliance, leading to identity-focused attacks that accessed Active Directory and involved credential theft from an internal Confluence server.…
F5 disclosed a security breach affecting its BIG-IP product line, where a state-sponsored threat actor gained unauthorized access to the company's internal engineering and product development environments. The attackers…
A security breach of F5's BIG-IP product line has been disclosed, revealing that a state-sponsored threat actor gained unauthorized access to F5's internal engineering and product development environments. The attackers…
Five individuals have pleaded guilty to facilitating North Korean operatives in obtaining remote IT jobs at U.S. companies by using false and stolen identities. The U.S. Department of Justice has also seized $15 million…
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added the OpenPLC ScadaBR vulnerability, tracked as CVE-2021-26829, to its Known Exploited Vulnerabilities catalog after confirming active…
A significant data breach at the Chinese cybersecurity firm Knownsec has resulted in the leak of over 12,000 classified documents, revealing sensitive information about state-sponsored cyber weapons and espionage…