F5 BIG-IP compromise let attackers pivot from Linux to Confluence and Active Directory
VPN Central [Unofficial]
May 27, 2026
Microsoft says a threat actor used a compromised F5 BIG-IP edge appliance as the starting point for a multi-stage intrusion that reached Linux systems, an internal Atlassian Confluence server, and Active Directory. The incident shows how one exposed appliance can give attackers a trusted path into systems that are not directly open to the internet. […]
The post F5 BIG-IP compromise let attackers pivot from Linux to Confluence and Active Directory appeared first on VPN Central.
Discussion in the ATmosphere