F5 BIG-IP RCE Vulnerability Actively Exploited in Wild
ID: f55636eb-ad52-507b-baa9-1d0f11bc371e
STIX ID: report--f55636eb-ad52-507b-baa9-1d0f11bc371e
Feed Name: Arctic Wolf Blog
Threat Score
### Executive Summary F5 released patches for CVE-2021-22986 — an unauthenticated RCE in the iControl REST API affecting BIG-IP and BIG-IQ — after which public PoC exploit code appeared and threat actors began exploiting the flaw; Arctic Wolf reports Mirai botnet campaigns actively using the exploit to compromise devices and advises immediate patching and monitoring for Mirai-related IOCs.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
