• bitcoinBitcoin (BTC) $ 76,202.00
  • ethereumEthereum (ETH) $ 2,356.72
  • tetherTether (USDT) $ 1.00
  • xrpXRP (XRP) $ 1.43
  • bnbBNB (BNB) $ 633.49
  • usd-coinUSDC (USDC) $ 0.999753
  • solanaSolana (SOL) $ 86.78
  • tronTRON (TRX) $ 0.327927
  • staked-etherLido Staked Ether (STETH) $ 2,265.05
  • figure-helocFigure Heloc (FIGR_HELOC) $ 1.02
  • dogecoinDogecoin (DOGE) $ 0.095997
  • whitebitWhiteBIT Coin (WBT) $ 55.26
  • usdsUSDS (USDS) $ 0.999729
  • hyperliquidHyperliquid (HYPE) $ 44.16
  • leo-tokenLEO Token (LEO) $ 10.15
  • wrapped-stethWrapped stETH (WSTETH) $ 2,779.67
  • cardanoCardano (ADA) $ 0.251410
  • bitcoin-cashBitcoin Cash (BCH) $ 445.16
  • wrapped-bitcoinWrapped Bitcoin (WBTC) $ 76,243.00
  • memecoreMemeCore (M) $ 4.49
  • binance-bridged-usdt-bnb-smart-chainBinance Bridged USDT (BNB Smart Chain) (BSC-USD) $ 0.998762
  • chainlinkChainlink (LINK) $ 9.39
  • wrapped-beacon-ethWrapped Beacon ETH (WBETH) $ 2,466.93
  • moneroMonero (XMR) $ 346.01
  • ethena-usdeEthena USDe (USDE) $ 0.999864
  • stellarStellar (XLM) $ 0.169450
  • wrapped-eethWrapped eETH (WEETH) $ 2,465.31
  • canton-networkCanton (CC) $ 0.145493
  • zcashZcash (ZEC) $ 322.55
  • susdssUSDS (SUSDS) $ 1.08
  • daiDai (DAI) $ 0.999592
  • litecoinLitecoin (LTC) $ 55.91
  • usd1-wlfiUSD1 (USD1) $ 1.00
  • coinbase-wrapped-btcCoinbase Wrapped BTC (CBBTC) $ 76,366.00
  • paypal-usdPayPal USD (PYUSD) $ 0.999714
  • avalanche-2Avalanche (AVAX) $ 9.41
  • hedera-hashgraphHedera (HBAR) $ 0.088659
  • wethWETH (WETH) $ 2,268.37
  • suiSui (SUI) $ 0.964748
  • rainRain (RAIN) $ 0.007656
  • shiba-inuShiba Inu (SHIB) $ 0.000006
  • usdt0USDT0 (USDT0) $ 0.998824
  • ravedaoRaveDAO (RAVE) $ 13.84
  • the-open-networkToncoin (TON) $ 1.39
  • crypto-com-chainCronos (CRO) $ 0.070503
  • hashnote-usycCircle USYC (USYC) $ 1.12
  • tether-goldTether Gold (XAUT) $ 4,788.09
  • world-liberty-financialWorld Liberty Financial (WLFI) $ 0.079950
  • blackrock-usd-institutional-digital-liquidity-fundBlackRock USD Institutional Digital Liquidity Fund (BUIDL) $ 1.00
  • ethena-staked-usdeEthena Staked USDe (SUSDE) $ 1.22
  • bittensorBittensor (TAO) $ 250.23
  • pax-goldPAX Gold (PAXG) $ 4,792.07
  • global-dollarGlobal Dollar (USDG) $ 0.999893
  • mantleMantle (MNT) $ 0.666557
  • polkadotPolkadot (DOT) $ 1.29
  • uniswapUniswap (UNI) $ 3.37
  • pi-networkPi Network (PI) $ 0.179274
  • nearNEAR Protocol (NEAR) $ 1.38
  • skySky (SKY) $ 0.076962
  • falcon-financeFalcon USD (USDF) $ 0.997581
  • little-pepe-5Little Pepe (LILPEPE) $ 2.16
  • okbOKB (OKB) $ 84.41
  • aaveAave (AAVE) $ 111.38
  • syrupusdcsyrupUSDC (SYRUPUSDC) $ 1.15
  • aster-2Aster (ASTER) $ 0.669395
  • htx-daoHTX DAO (HTX) $ 0.000002
  • pepePepe (PEPE) $ 0.000004
  • usddUSDD (USDD) $ 1.00
  • janus-henderson-anemoy-treasury-fundJanus Henderson Anemoy Treasury Fund (JTRSY) $ 1.10
  • ripple-usdRipple USD (RLUSD) $ 0.999932
  • internet-computerInternet Computer (ICP) $ 2.54
  • ethereum-classicEthereum Classic (ETC) $ 8.57
  • bfusdBFUSD (BFUSD) $ 0.999785
  • ondo-us-dollar-yieldOndo US Dollar Yield (USDY) $ 1.13
  • bitget-tokenBitget Token (BGB) $ 1.87
  • ondo-financeOndo (ONDO) $ 0.261395
  • kucoin-sharesKuCoin (KCS) $ 8.58
  • gatechain-tokenGate (GT) $ 7.23
  • jupiter-perpetuals-liquidity-provider-tokenJupiter Perpetuals Liquidity Provider Token (JLP) $ 4.00
  • pump-funPump.fun (PUMP) $ 0.001902
  • quant-networkQuant (QNT) $ 75.17
  • ethenaEthena (ENA) $ 0.121015
  • morphoMorpho (MORPHO) $ 1.92
  • eutblSpiko EU T-Bills Money Market Fund (EUTBL) $ 1.24
  • jito-staked-solJito Staked SOL (JITOSOL) $ 124.46
  • united-stablesUnited Stables (U) $ 1.00
  • algorandAlgorand (ALGO) $ 0.108169
  • kelp-dao-restaked-ethKelp DAO Restaked ETH (RSETH) $ 2,404.69
  • polygon-ecosystem-tokenPOL (ex-MATIC) (POL) $ 0.089264
  • kaspaKaspa (KAS) $ 0.034453
  • binance-peg-wethBinance-Peg WETH (WETH) $ 2,262.26
  • render-tokenRender (RENDER) $ 1.82
  • rocket-pool-ethRocket Pool ETH (RETH) $ 2,631.35
  • cosmosCosmos Hub (ATOM) $ 1.80
  • worldcoin-wldWorldcoin (WLD) $ 0.276481
  • binance-bridged-usdc-bnb-smart-chainBinance Bridged USDC (BNB Smart Chain) (USDC) $ 0.999945
  • nexoNEXO (NEXO) $ 0.903528
  • usdtbUSDtb (USDTB) $ 0.999748
  • wbnbWrapped BNB (WBNB) $ 759.61
  • superstate-short-duration-us-government-securities-fund-ustbSuperstate Short Duration U.S. Government Securities Fund (USTB) (USTB) $ 11.05
  • ignition-fbtcFunction FBTC (FBTC) $ 76,389.00
  • arbitrumArbitrum (ARB) $ 0.129308
  • aptosAptos (APT) $ 0.951299
  • blockchain-capitalBlockchain Capital (BCAP) $ 82.76
  • filecoinFilecoin (FIL) $ 0.954552
  • flare-networksFlare (FLR) $ 0.008203
  • syrupusdtsyrupUSDT (SYRUPUSDT) $ 1.11
  • official-trumpOfficial Trump (TRUMP) $ 2.92
  • jupiter-exchange-solanaJupiter (JUP) $ 0.180472
  • dexeDeXe (DEXE) $ 13.70
  • binance-staked-solBinance Staked SOL (BNSOL) $ 108.24
  • hash-2Provenance Blockchain (HASH) $ 0.011040
  • beldexBeldex (BDX) $ 0.080019
  • midnight-3Midnight (NIGHT) $ 0.037024
  • vechainVeChain (VET) $ 0.007148
  • xdce-crowd-saleXDC Network (XDC) $ 0.030220
  • justJUST (JST) $ 0.070561
  • new-x-ceo-is-backNEW X CEO IS BACK (XFLOKI) $ 0.506041
  • bridged-usdc-polygon-pos-bridgePolygon Bridged USDC (Polygon PoS) (USDC.E) $ 0.999720
  • ousgOUSG (OUSG) $ 114.95
  • solv-btcSolv Protocol BTC (SOLVBTC) $ 76,461.00
  • yldsYLDS (YLDS) $ 0.999908
  • lombard-staked-btcLombard Staked BTC (LBTC) $ 76,491.00
  • ghoGHO (GHO) $ 0.999571
  • siren-2Siren (SIREN) $ 0.780626
  • stable-2​​Stable (STABLE) $ 0.025902
  • clbtcclBTC (CLBTC) $ 76,920.00
  • usual-usdUsual USD (USD0) $ 0.998205
  • bonkBonk (BONK) $ 0.000006
  • fetch-aiArtificial Superintelligence Alliance (FET) $ 0.225301
  • pancakeswap-tokenPancakeSwap (CAKE) $ 1.54
  • true-usdTrueUSD (TUSD) $ 0.998990
  • a7a5A7A5 (A7A5) $ 0.012385
  • stakewise-v3-osethStakeWise Staked ETH (OSETH) $ 2,419.84
  • bianrensheng币安人生 (BinanceLife) (币安人生) $ 0.494699
  • edgexedgeX (EDGE) $ 1.34
  • kinetic-staked-hypeKinetiq Staked HYPE (KHYPE) $ 33.97
  • layerzeroLayerZero (ZRO) $ 1.89
  • tbtctBTC (TBTC) $ 70,942.00
  • virtual-protocolVirtuals Protocol (VIRTUAL) $ 0.720222
  • wrappedm-by-m0WrappedM by M0 (WM) $ 1.00
  • pudgy-penguinsPudgy Penguins (PENGU) $ 0.007397
  • adi-tokenADI (ADI) $ 4.34
  • dashDash (DASH) $ 35.07
  • blockstackStacks (STX) $ 0.233427
  • euro-coinEURC (EURC) $ 1.18
  • chilizChiliz (CHZ) $ 0.040530
  • c8ntinuumc8ntinuum (CTM) $ 0.087592
  • first-digital-usdFirst Digital USD (FDUSD) $ 0.999333
  • mantle-staked-etherMantle Staked Ether (METH) $ 2,455.82
  • ether-fiEther.fi (ETHFI) $ 0.494242
  • venice-tokenVenice Token (VVV) $ 8.90
  • polygon-pos-bridged-dai-polygon-posPolygon PoS Bridged DAI (Polygon POS) (DAI) $ 0.999983
  • janus-henderson-anemoy-aaa-clo-fundJanus Henderson Anemoy AAA CLO Fund (JAAA) $ 1.03
  • tezosTezos (XTZ) $ 0.368231
  • resolv-wstusrResolv wstUSR (WSTUSR) $ 1.13
  • cocaCOCA (COCA) $ 1.30
  • monadMonad (MON) $ 0.033347
  • aerodrome-financeAerodrome Finance (AERO) $ 0.424116
  • sei-networkSei (SEI) $ 0.056567
  • doge-strategyDoge Strategy (DOGESTR) $ 0.288297
  • liquid-staked-ethereumLiquid Staked ETH (LSETH) $ 2,406.26
  • usxUSX (USX) $ 0.999679
  • arbitrum-bridged-wbtc-arbitrum-oneArbitrum Bridged WBTC (Arbitrum One) (WBTC) $ 76,200.00
  • kinesis-goldKinesis Gold (KAU) $ 156.13
  • hastra-primePRIME (PRIME) $ 1.03
  • celestiaCelestia (TIA) $ 0.402114
  • decredDecred (DCR) $ 20.62
  • wrapped-flareWrapped Flare (WFLR) $ 0.009961
  • sun-tokenSun Token (SUN) $ 0.018450
  • curve-dao-tokenCurve DAO (CRV) $ 0.231437
  • l2-standard-bridged-weth-baseL2 Standard Bridged WETH (Base) (WETH) $ 2,266.86
  • lido-daoLido DAO (LDO) $ 0.407967
  • steakhouse-usdc-morpho-vaultSteakhouse USDC Morpho Vault (STEAKUSDC) $ 1.12
  • apenftAINFT (NFT) $ 0.00000034
  • injective-protocolInjective (INJ) $ 3.28
  • spx6900SPX6900 (SPX) $ 0.349249
  • gnosisGnosis (GNO) $ 122.72
  • binance-peg-xrpBinance-Peg XRP (XRP) $ 1.59
  • bittorrentBitTorrent (BTT) $ 0.00000033
  • ether-fi-liquid-ethEther.Fi Liquid ETH (LIQUIDETH) $ 2,443.47
  • bitcoin-svBitcoin SV (BSV) $ 16.04
  • renzo-restaked-ethRenzo Restaked ETH (EZETH) $ 2,421.84
  • crvusdcrvUSD (CRVUSD) $ 0.999439
  • conflux-tokenConflux (CFX) $ 0.061013
  • noonNoon (NOON) $ 0.751949
  • sbtc-2sBTC (SBTC) $ 77,039.00
  • doublezeroDoubleZero (2Z) $ 0.089475
  • kinesis-silverKinesis Silver (KAG) $ 82.28
  • flokiFLOKI (FLOKI) $ 0.000031
  • jupiter-staked-solJupiter Staked SOL (JUPSOL) $ 115.56
  • kaiaKaia (KAIA) $ 0.049441
  • savings-usddSavings USDD (SUSDD) $ 1.03
  • plasmaPlasma (XPL) $ 0.120461
  • usdaiUSDai (USDAI) $ 0.999772
  • syrupMaple Finance (SYRUP) $ 0.242417
  • msolMarinade Staked SOL (MSOL) $ 133.18
  • jasmycoinJasmyCoin (JASMY) $ 0.005684
  • arbitrum-bridged-weth-arbitrum-oneArbitrum Bridged WETH (Arbitrum One) (WETH) $ 2,265.06
  • the-graphThe Graph (GRT) $ 0.025500

Chinese-linked hackers infiltrated F5’s systems in late 2023

0 57

Chinese-linked hackers infiltrated F5’s systems in late 2023

Hackers linked to China’s state-backed cyber units infiltrated F5’s internal networks in late 2023 and stayed hidden until this August, according to Bloomberg. The Seattle-based cybersecurity company admitted in filings that its systems had been compromised for nearly two years, allowing attackers “long-term, persistent access” to its internal infrastructure.

The breach reportedly exposed source code, sensitive configuration data, and information about undisclosed software vulnerabilities in its BIG-IP platform, a technology that powers the networks of 85% of Fortune 500 companies and many US federal agencies.

The hackers broke in through F5’s own software, which had been left exposed online after employees failed to follow internal security policies. The attackers exploited that weak point to enter and roam freely inside systems that should have been locked down.

F5 company told customers that the oversight directly violated the same cyber guidelines the company teaches its clients to follow. When the news broke, F5’s shares fell more than 10% on October 16, wiping out millions in market value.

“Since that vulnerability information is out there, everyone using F5 should assume they’re compromised,” said Chris Woods, a former security executive with HP who is now founder of CyberQ Group Ltd., a cybersecurity services firm in the UK.

Hackers used F5’s own technology to maintain stealth and control

F5 sent customers on Wednesday a threat hunting guide for a type of malware called Brickstorm used by Chinese state-backed hackers, according to Bloomberg.

Mandiant, which was hired by F5, confirmed that Brickstorm allowed hackers to move quietly through VMware virtual machines and deeper infrastructure. After securing their foothold, the intruders stayed inactive for over a year, an old but effective tactic meant to outwait the company’s security log retention period.

Logs, which record every digital trace, are often deleted after 12 months to save costs. Once those logs were gone, the hackers reactivated and pulled data from BIG-IP, including source code and vulnerability reports.

F5 said that while some customer data was accessed, it has no real evidence that hackers changed its source code or used the stolen information to exploit clients.

F5’s BIG-IP platform handles load balancing and network security, routing digital traffic and shielding systems from intrusion.

US and UK governments issue emergency warnings

The US Cybersecurity and Infrastructure Security Agency (CISA) called the incident a “significant cyber threat targeting federal networks.” In an emergency directive issued on Wednesday, CISA ordered all federal agencies to identify and update their F5 products by October 22.

The UK’s National Cyber Security Centre also issued an alert about the breach on Wednesday, warning that hackers could use their access to F5 systems to exploit the company’s technology and to identify additional vulnerabilities.

Following the disclosure, F5 CEO Francois Locoh-Donou held briefings with customers to explain the scope of the breach. Francois confirmed that the company had called in CrowdStrike and Google’s Mandiant to assist alongside law enforcement and government investigators.

Officials familiar with the probe allegedly told Bloomberg that the Chinese government was behind the attack. But a Chinese spokesperson dismissed the accusation as “groundless and made without evidence.”

Ilia Rabinovich, Sygnia’s vice president of cybersecurity consulting, said that in the case Sygnia disclosed last year, hackers hid inside F5’s appliances and used them as a “command and control” base to infiltrate victim networks undetected. “There is a potential for it to evolve into something that is massive, because numerous organizations deploy those devices,” he said.

Source

Leave A Reply

Your email address will not be published.