A critical vulnerability in F5’s BIG-IP Access Policy Manager (APM) is being exploited in the wild. The bug, allocated CVE-2025-53521, gives a remote attacker unauthenticated remote code execution (pre-auth RCE) powers. IOCs published by F5 today point to sophisticated attacks in which the threat group is disabling the SELinux
Read the full storyThe Stack
Interviews, insight, intelligence, and exclusive events for digital leaders.
All the latest
All the latest
"I think our biggest challenge was, and this is something we learned the hard way, was the password reset..."
Microsoft itself warns that it is "not possible to audit the generation of SAS tokens"
Microsoft Workloads run on-premises aren’t fit for purpose: High maintenance, not scalable, not agile. Is taking them to AWS the best option?
"We haven’t disclosed a specific timeline to reaching profitability, and we are continuing to invest aggressively"
Social engineering allegedly led to MGM attack: $13 billion firm's cybersecurity "defeated by a 10-minute conversation"?