<?xml version='1.0' encoding='utf-8'?>
<rss version="2.0"><channel><title>Cybersecurity Tracker: F5 Watch</title><link>https://cybersecuritytracker.ai/?stack=1</link><description>Stories and vulnerabilities involving F5.</description><lastBuildDate>Sun, 26 Jul 2026 22:32:51 GMT</lastBuildDate><item><title>Critical NGINX Vulnerability Can Crash Workers and May Allow Remote Code Execution</title><link>https://thehackernews.com/2026/07/critical-nginx-vulnerability-can-crash.html</link><guid isPermaLink="false">cst-2805</guid><description>F5 released patches for a critical nginx heap buffer overflow vulnerability (CVE-2026-42533) that allows unauthenticated remote attackers to crash worker processes with specially crafted HTTP requests. The flaw was patched on July 15, 2026 in nginx 1.30.4 (stable), 1.31.3 (mainline), and NGINX Plus 37.0.3.1. Exploitation can cause denial of service by restarting or crashing workers.</description><pubDate>Sun, 19 Jul 2026 20:42:49 GMT</pubDate></item><item><title>F5 Patches Multiple NGINX, BIG-IP Vulnerabilities</title><link>https://securityweek.com/f5-patches-multiple-nginx-big-ip-vulnerabilities</link><guid isPermaLink="false">cst-2654</guid><description>F5 released patches for multiple vulnerabilities affecting NGINX and BIG-IP products. The flaws could enable attackers to modify configurations, terminate processes, cross security boundaries, leak memory, and execute arbitrary code.</description><pubDate>Thu, 16 Jul 2026 09:20:10 GMT</pubDate></item><item><title>F5 Insight for ADSP enhances BIG-IP operations with guided updates and AI audit trails</title><link>https://helpnetsecurity.com/2026/07/15/f5-insight-for-adsp</link><guid isPermaLink="false">cst-2605</guid><description>F5 announced new fleet management capabilities for F5 Insight for ADSP, a tool for managing BIG-IP environments, featuring guided update workflows, role-based access controls, and AI-powered audit trails. These features provide visibility and accountability across large, distributed application delivery and security deployments to help organizations reduce risk exposure and accelerate vulnerability response.</description><pubDate>Wed, 15 Jul 2026 13:33:41 GMT</pubDate></item><item><title>Cybersecurity M&amp;A Roundup: 37 Deals Announced in June 2026</title><link>https://securityweek.com/cybersecurity-ma-roundup-37-deals-announced-in-june-2026</link><guid isPermaLink="false">cst-2402</guid><description>A total of 37 cybersecurity mergers and acquisitions were announced during June 2026, involving major companies including 1Password, Accenture, Cisco, F5, Rubrik, and SailPoint. The article provides a roundup of these transaction announcements in the cybersecurity sector.</description><pubDate>Mon, 13 Jul 2026 12:20:14 GMT</pubDate></item><item><title>Hitachi Energy e-mesh EMS</title><link>https://cisa.gov/news-events/ics-advisories/icsa-26-188-03</link><guid isPermaLink="false">cst-549</guid><description>Hitachi Energy has disclosed a heap-based buffer overflow vulnerability (CVE-2026-42945) in its e-mesh EMS product versions 4.1.6, 4.4.2, and 4.7.0, caused by an NGINX module flaw. The vulnerability, with a CVSS 3.1 score of 8.1, could allow unauthenticated attackers to cause denial of service or execute arbitrary code by sending crafted HTTP requests, particularly on systems without Address Space Layout Randomization (ASLR) enabled. Hitachi Energy recommends applying hotfixes to update NGINX to version 1.30.2 or later, and has provided interim mitigations including configuration changes and operating system upgrades.</description><pubDate>Tue, 07 Jul 2026 12:00:00 GMT</pubDate></item><item><title>March 2026 CVE Landscape: 31 High-Impact Vulnerabilities Identified, Interlock Ransomware Group Exploits Cisco FMC Zero-Day</title><link>https://recordedfuture.com/blog/march-2026-cve-landscape</link><guid isPermaLink="false">cst-1981</guid><description>Insikt Group identified 31 high-impact vulnerabilities actively exploited in March 2026, with 29 rated as very critical. The affected products span major vendors including Cisco, Microsoft, Google, ConnectWise, Citrix, and others, with Microsoft and Apple accounting for approximately 32% of the total. Notable findings include the Interlock ransomware group exploiting a Cisco Firewall Management Center zero-day, the continued exploitation of a nine-year-old Hikvision vulnerability, and public proof-of-concept exploits available for 10 of the 31 vulnerabilities.</description><pubDate>Mon, 13 Apr 2026 00:00:00 GMT</pubDate></item><item><title>Someone Knows Bash Far Too Well, And We Love It (Ivanti EPMM Pre-Auth RCEs CVE-2026-1281 &amp; CVE-2026-1340)</title><link>https://labs.watchtowr.com/someone-knows-bash-far-too-well-and-we-love-it-ivanti-epmm-pre-auth-rces-cve-2026-1281-cve-2026-1340</link><guid isPermaLink="false">cst-566</guid><description>Ivanti released patches for two pre-authentication remote code execution vulnerabilities (CVE-2026-1281 and CVE-2026-1340) in Endpoint Manager Mobile (EPMM), an enterprise mobility management platform used to control corporate mobile devices. The vulnerabilities are actively exploited in the wild and have been added to CISA's Known Exploited Vulnerabilities list. Permanent patches are not available until Q1 2026; customers are currently receiving temporary RPM patches that must be reapplied after system updates to remain effective.</description><pubDate>Fri, 30 Jan 2026 16:15:16 GMT</pubDate></item><item><title>GreyNoise’s Recent Observations Around F5</title><link>https://greynoise.io/blog/recent-observations-around-f5</link><guid isPermaLink="false">cst-1882</guid><description>GreyNoise has released threat intelligence observations about activity targeting F5 BIG-IP systems following a security incident announced on October 15, 2025. The intelligence sharing aims to help organizations strengthen their defensive measures against attacks exploiting the BIG-IP vulnerability.</description><pubDate>Wed, 15 Oct 2025 00:00:00 GMT</pubDate></item><item><title>Heightened In-The-Wild Activity On Key Technologies Observed On March 28</title><link>https://greynoise.io/blog/heightened-in-the-wild-activity-key-technologies</link><guid isPermaLink="false">cst-1908</guid><description>On March 28, GreyNoise detected a sharp increase in wild exploitation activity targeting multiple vendors including SonicWall, Zoho, Zyxel, F5, Linksys, and Ivanti. The affected technologies span both edge systems and internal management tools, suggesting a broad attack campaign.</description><pubDate>Tue, 01 Apr 2025 00:00:00 GMT</pubDate></item></channel></rss>