Security Provider F5 Suffers Cyberattack

October 15, 2025

INCIDENT

Cybersecurity provider, F5 Inc. suffered a nation-state cyberattack where source code ended up exfiltrated from its networking product suite, BIG-IP, this past August and per Department of Justice approval, delayed notification of the hack until Wednesday.
“On August 9, 2025, F5, Inc. learned that a highly sophisticated nation-state threat actor had gained unauthorized access to certain company systems,” the company said in 8-K report to the Securities and Exchange Commission (SEC) filed Wednesday, October 15. “The company promptly activated its incident response processes, and has taken extensive actions to contain the threat actor. To support these activities, the company engaged leading external cybersecurity experts.”
Seattle, Washington-based F5 specializes in application security, multi-cloud management, online fraud prevention, application delivery networking, application availability and performance, and network security, access, and authorization. Meanwhile, the company had over $2.8 billion in revenues for its last fiscal year.

Incident Date

August 9, 2025

Estimated Cost

Unknown at this time

Victims

Type of Malware

No Malware identified

Threat Source

No threat source identified

Industries

Other

Impacts

IT