A critical vulnerability in F5’s BIG-IP Access Policy Manager (APM) is being exploited in the wild. The bug, allocated CVE-2025-53521, gives a remote attacker unauthenticated remote code execution (pre-auth RCE) powers. IOCs published by F5 today point to sophisticated attacks in which the threat group is disabling the SELinux
Read the full storyThe Stack
Interviews, insight, intelligence, and exclusive events for digital leaders.
All the latest
All the latest
From Sun Ray, to Fire: With its WorkSpaces Thin Client, can AWS make DaaS hot again?
A longer "lookback" period of utilisation history, centralised cost savings hub and more. But don't rely on it alone...
Attacks on Exchange Server Attacks in 2022 were so rife that threat groups were observed cleaning up .aspx and .bat files to remove other attackers
Hey criminals! Fire an HTTP GET request. Grab system memory including session cookies issued post-authentication. Don't worry about logs. Pillage and loot. Thanks, Citrix.
Incident comes weeks after the Application Performance Monitoring firm was taken private in a $6.5 billion buyout
"National investment in compute capacity is a new economic imperative... countries are awakening to the need to invest in sovereign AI infrastructure" says Jensen Huang
When your digital transformation failure is associated with "total corporate psychopathy, a mad Kafka-esque nightmare"
"Each NHS organisation will be the data controller for their ‘federated’ platform instance. The use of the data will always remain under the full control and protection of the NHS