Technologist Mag
  • Home
  • Tech News
  • AI
  • Apps
  • Gadgets
  • Gaming
  • Guides
  • Laptops
  • Mobiles
  • Wearables
  • More
    • Web Stories
    • Trending
    • Press Release

Subscribe to Updates

Get the latest tech news and updates directly to your inbox.

What's On

Man Has Pig Kidney Removed After Living With It for a Record 9 Months

27 October 2025

The All-Clad Pizza Oven Is $800 Off Right Now

27 October 2025

The All-Clad Factory Seconds Sale Is Back for a Few Days

27 October 2025

Sennheiser’s Awesome Wireless Earbuds Are Almost Half Off

27 October 2025

OpenAI Says Hundreds of Thousands of ChatGPT Users May Show Signs of Manic or Psychotic Crisis Every Week

27 October 2025
Facebook X (Twitter) Instagram
Facebook X (Twitter) Instagram
Technologist Mag
SUBSCRIBE
  • Home
  • Tech News
  • AI
  • Apps
  • Gadgets
  • Gaming
  • Guides
  • Laptops
  • Mobiles
  • Wearables
  • More
    • Web Stories
    • Trending
    • Press Release
Technologist Mag
Home » Why the F5 Hack Created an ‘Imminent Threat’ for Thousands of Networks
Tech News

Why the F5 Hack Created an ‘Imminent Threat’ for Thousands of Networks

By technologistmag.com16 October 20253 Mins Read
Share
Facebook Twitter Reddit Telegram Pinterest Email

Thousands of networks—many of them operated by the US government and Fortune 500 companies—face an “imminent threat” of being breached by a nation-state hacking group following the breach of a major maker of software, the federal government warned on Wednesday.

F5, a Seattle-based maker of networking software, disclosed the breach on Wednesday. F5 said a “sophisticated” threat group working for an undisclosed nation-state government had surreptitiously and persistently dwelled in its network over a “long term.” Security researchers who have responded to similar intrusions in the past took the language to mean the hackers were inside the F5 network for years.

Unprecedented

During that time, F5 said, the hackers took control of the network segment the company uses to create and distribute updates for BIG IP, a line of server appliances that F5 says is used by 48 of the world’s top 50 corporations. Wednesday’s disclosure went on to say the threat group downloaded proprietary BIG-IP source code information about vulnerabilities that had been privately discovered but not yet patched. The hackers also obtained configuration settings that some customers used inside their networks.

Control of the build system and access to the source code, customer configurations, and documentation of unpatched vulnerabilities has the potential to give the hackers unprecedented knowledge of weaknesses and the ability to exploit them in supply-chain attacks on thousands of networks, many of which are sensitive. The theft of customer configurations and other data further raises the risk that sensitive credentials can be abused, F5 and outside security experts said.

Customers position BIG-IP at the very edge of their networks for use as load balancers and firewalls, and for inspection and encryption of data passing into and out of networks. Given BIG-IP’s network position and its role in managing traffic for web servers, previous compromises have allowed adversaries to expand their access to other parts of an infected network.

F5 said that investigations by two outside intrusion-response firms have yet to find any evidence of supply-chain attacks. The company attached letters from firms IOActive and NCC Group attesting that analyses of source code and build pipeline uncovered no signs that a “threat actor modified or introduced any vulnerabilities into the in-scope items.” The firms also said they didn’t identify any evidence of critical vulnerabilities in the system. Investigators, which also included Mandiant and CrowdStrike, found no evidence that data from its CRM, financial, support case management, or health systems was accessed.

The company released updates for its BIG-IP, F5OS, BIG-IQ, and APM products. CVE designations and other details are here. Two days ago, F5 rotated BIG-IP signing certificates, though there was no immediate confirmation that the move is in response to the breach.

Share. Facebook Twitter Pinterest LinkedIn Telegram Reddit Email
Previous ArticleShould You Hike in Boots or Trail Runners?
Next Article All Windows 11 PCs Will Get These Advanced Copilot AI Features

Related Articles

Man Has Pig Kidney Removed After Living With It for a Record 9 Months

27 October 2025

The All-Clad Pizza Oven Is $800 Off Right Now

27 October 2025

The All-Clad Factory Seconds Sale Is Back for a Few Days

27 October 2025

Sennheiser’s Awesome Wireless Earbuds Are Almost Half Off

27 October 2025

OpenAI Says Hundreds of Thousands of ChatGPT Users May Show Signs of Manic or Psychotic Crisis Every Week

27 October 2025

The Future of AI Isn’t Just Slop

27 October 2025
Stay In Touch
  • Facebook
  • Twitter
  • Pinterest
  • Instagram
  • YouTube
  • Vimeo

Subscribe to Updates

Get the latest tech news and updates directly to your inbox.

Don't Miss

The All-Clad Pizza Oven Is $800 Off Right Now

By technologistmag.com27 October 2025

Cookware brand All-Clad surprised me this year. This summer, it breezed into the backyard pizza…

The All-Clad Factory Seconds Sale Is Back for a Few Days

27 October 2025

Sennheiser’s Awesome Wireless Earbuds Are Almost Half Off

27 October 2025

OpenAI Says Hundreds of Thousands of ChatGPT Users May Show Signs of Manic or Psychotic Crisis Every Week

27 October 2025

The Future of AI Isn’t Just Slop

27 October 2025
Technologist Mag
Facebook X (Twitter) Instagram Pinterest
  • Privacy
  • Terms
  • Advertise
  • Contact
© 2025 Technologist Mag. All Rights Reserved.

Type above and press Enter to search. Press Esc to cancel.