#F5 BIG-IP
Stealth Linux Rootkit Hides Fileless Web Shells Inside F5 BIG-IP Memory
Researchers have uncovered a Linux rootkit that alters PHP code only in memory on compromised F5 BIG-IP APM appliances. Its fileless web shell, local socket backdoor and upgrade...
Hackers Exploit End-of-Life F5 BIG-IP as Enterprise Entry Point, Pivoting to Active Directory via Confluence RCE
Microsoft Defender researchers document a multi-stage intrusion where threat actors exploited an end-of-life F5 BIG-IP appliance to gain SSH access, then pivoted through an unpatched Confluence server to...