Security
A critical vulnerability in F5’s BIG-IP Access Policy Manager (APM) is being exploited in the wild. The bug, allocated CVE-2025-53521, gives a remote attacker unauthenticated remote code execution (pre-auth RCE) powers. IOCs published by F5 today point to sophisticated attacks in which the threat group is disabling the SELinux
All the joy of physical-presence vulnerabilities but remotely, and many cheap, single-port IP-KVMs are wide open, says Eclypsium.
New hires, especially coders with deep access to vulnerable systems, remain a prime vulnerability. Exploited mostly by North Korea – for now.
Ubuntu: "Our recommendation is that you apply both userspace mitigations and Linux kernel security updates"
NVIDIA will seemingly not shy away from association with the security nightmare that is OpenClaw, naming its Nemo version in homage.
No reports yet that CVE-2026-20079 and CVE-2026-20131 are being exploited, but we happen to know Cisco 0days get quietly exploited for years.