Summary
F5, Inc. (FFIV) has disclosed a material cybersecurity incident where a sophisticated nation-state threat actor gained unauthorized access to certain Company systems, including its BIG-IP product development environment. While containment efforts are believed to be successful and no evidence of new unauthorized activity has been observed, the investigation is ongoing. The exfiltrated files included portions of the Company's BIG-IP source code and information on undisclosed vulnerabilities, though F5 states it's not aware of any active exploitation of these vulnerabilities or modifications to its software supply chain. In parallel, F5 announced the immediate resignation of director Michael Montoya from its Board. However, Mr. Montoya has been appointed Chief Technology Operations Officer, tasked with leading an enterprise-wide security strategy. The Board size has been reduced to ten members as a result. The Company is actively working with law enforcement and is implementing further security measures, while evaluating the potential financial and operational impact of the incident.
Key Highlights
- 1Sophisticated nation-state actor gained unauthorized access to F5 systems, including BIG-IP product development environment.
- 2Containment actions are believed to be successful, with no new unauthorized activity observed since initiation.
- 3Exfiltrated data includes portions of BIG-IP source code and information on undisclosed vulnerabilities; no awareness of active exploitation or supply chain modification.
- 4Director Michael Montoya resigned from the Board but was appointed Chief Technology Operations Officer to lead security strategy.
- 5The Board size has been reduced from eleven to ten members.
- 6F5 is cooperating with federal law enforcement and government partners, and is implementing enhanced security measures.
- 7The Company is actively evaluating the potential financial and operational impact of the incident.