Nginx Remote Code Execution Vulnerability (CVE-2026-42945) Notice

Overview Recently, NSFOCUS CERT detected that Nginx and F5 issued security bulletins to fix the Nginx remote code execution vulnerability (CVE-2026-42945); because the ngx_http_rewrite_module module contains question marks in processing (? ) ...
F5 Strengthens, Scales & Sustains AI Security With Integrated Runtime Protection 

F5 Strengthens, Scales & Sustains AI Security With Integrated Runtime Protection 

F5 AI Guardrails and F5 AI Red Team extend platform capabilities with continuous testing, adaptive governance and real-time protection ...
Security Boulevard
AI, physical, AI security, policies, f5, AI, AI attack surface, security,

From LLMs to Cloud Infrastructure: F5 Aims to Secure the New AI Attack Surface 

Accelerate human-led innovation, automate the grunt work and make sure AI delivers real value without proliferating new security risks.  ...
Security Boulevard

BIG-IP Vulnerability Alert: Remote Code Execution Risk

In recent news, F5 has issued a critical security alert regarding a significant BIG-IP vulnerability that poses a severe risk to their BIG-IP systems. This vulnerability, rated at 9.8 out of 10 ...

F5 BIG-IP Remote Code Execution Vulnerability (CVE-2023-46747) Notification

Overview Recently, NSFOCUS CERT monitored that F5 had released a security announcement to fix a remote code execution vulnerability in BIG-IP (CVE-2023-46747). Due to the problem of F5 BIG-IP forwarding AJP protocol ...
Red Sift credential F5 Labs artificial intelligence

F5 Adds More ML Algorithms to Better Secure APIs

F5 this week extended the ability of its cloud security platforms and services to secure application programming interfaces (APIs) by adding additional machine learning (ML) algorithms to make it easier to both ...
Security Boulevard
LLMs, AI, cyberattacks, access, identity, 1Password, Exabeam, LogRhythm, GenAI, censorship, model, RBAC, secure, Fortinet, SASE, Opal, access privileges, cloud security, GenAI, generative AI cloud compromise LLM

F5 Delivers on Cybersecurity Integration Promise

F5 has extended the reach of its cloud security platform to include the infrastructure that applications are deployed on using technology it gained with the acquisition of ThreatStack in late 2021. Chris ...
Security Boulevard
CVE-2022-1388: Critical security vulnerabilities in F5 Big-IP allows attackers to execute arbitrary code

CVE-2022-1388: Critical security vulnerabilities in F5 Big-IP allows attackers to execute arbitrary code

On May 5, 2022, MITRE published CVE-2022-1388, an authentication bypass vulnerability in the BIG-IP modules affecting the iControl REST component. The vulnerability was assigned a CVSSv3 score of 9.8 The vulnerability was ...
f5 Honeypot Network Forensics

Honeypot Network Forensics

NCC Group recently released a 500 MB PCAP file containing three months of honeypot web traffic data related to the F5 remote code execution vulnerability CVE-2020-5902. In a blog post the NCC ...