F5 Labs
-
NGINX flaw left hidden for 18 years could allow remote code execution
A critical NGINX rewrite module flaw hidden for 18 years can let a remote attacker trigger code execution or denial of service with crafted requests, according to a technical analysis and vendor advisory.
-
Investors in F5 urged to seek lead plaintiff status after BIG-IP breach and 10.9% share drop
A press release said investors in F5 have until February 17, 2026 to seek lead plaintiff status after the company linked weaker fiscal 2026 guidance to a BIG-IP security breach and a 10.9 percent two-day share decline.
-
Hackers Exploit Cloud Native Vulnerabilities to Access AWS EC2 Metadata
Cyber criminals have initiated a campaign aimed at stealing sensitive information from AWS EC2 Instance Metadata by exploiting vulnerabilities known as server-side request forgery (SSRF). Findings from F5 Labs highlight the urgency of migrating to improved security protocols to defend against such attacks.



