Skip to main content

CISA exec blames nation-state hackers and Democrats for putting America's critical systems at risk

2 months 2 weeks ago
Federal agencies have seven days to patch F5 products

An unidentified nation-state hacking crew targeting vulnerable F5 products to break into US government networks poses an "imminent risk" to federal agencies, American cyber officials warned on Wednesday – while also blaming Democrats for the ongoing government shutdown and insisting that the staffing cuts haven't hurt cyber defenses at all.…

Jessica Lyons

F5 Says Hackers Stole Undisclosed BIG-IP Flaws, Source Code

2 months 2 weeks ago
An anonymous reader quotes a report from BleepingComputer: U.S. cybersecurity company F5 disclosed that nation-state hackers breached its systems and stole undisclosed BIG-IP security vulnerabilities and source code. The company states that it first became aware of the breach on August 9, 2025, with its investigations revealing that the attackers had gained long-term access to its system, including the company's BIG-IP product development environment and engineering knowledge management platform. F5 is a Fortune 500 tech giant specializing in cybersecurity, cloud management, and application delivery networking (ADN) applications. The company has 23,000 customers in 170 countries, and 48 of the Fortune 50 entities use its products. BIG-IP is the firm's flagship product used for application delivery and traffic management by many large enterprises worldwide. [...] F5 is still reviewing which customers had their configuration or implementation details stolen and will contact them with guidance. To help customers secure their F5 environments against risks stemming from the breach, the company released updates for BIG-IP, F5OS, BIG-IP Next for Kubernetes, BIG-IQ, and APM clients. Despite any evidence "of undisclosed critical or remote code execution vulnerabilities," the company urges customers to prioritize installing the new BIG-IP software updates.

Read more of this story at Slashdot.

BeauHD

X to combat bot problem by showing more info about users

2 months 2 weeks ago
Meet [user] from [location]

In an effort to help human readers figure out whether they can trust the source of information (or opinion) posted on X, Elon Musk’s social network plans to add a new "About this account" screen with metadata from each user, including their location, how long they’ve had the account, and how many times they've changed their usernames.…

Avram Piltch

Google Will Let Friends Help You Recover an Account

2 months 2 weeks ago
Google is introducing new recovery tools that aim to make it less frustrating to regain access when you're locked out of your account. The Verge: Instead of answering security questions or entering a recovery email address, Google's new security features allow account holders to verify their identity using a linked mobile number, or trusted friends or family members. The Recovery Contacts feature enables users to designate people to confirm their identity in order to regain access to accounts after getting hacked or losing their password or passkey. Google didn't specify how the verification process works, but says the feature provides "a simple and secure way to regain access when standard recovery methods fail." Recovery Contacts is available for eligible personal Google accounts, and can be found under the Security option in the account settings.

Read more of this story at Slashdot.

msmash