"CISA Warns of Threat Actors Exploiting F5 BIG-IP Cookies for Network Reconnaissance"
"CISA Warns of Threat Actors Exploiting F5 BIG-IP Cookies for Network Reconnaissance"
The US Cybersecurity and Infrastructure Security Agency (CISA) warns that threat actors are using unencrypted persistent cookies managed by the F5 BIG-IP Local Traffic Manager (LTM) module to perform network reconnaissance. According to CISA, the module is being leveraged to enumerate other non-internet-facing devices on the target network. CISA warned that a malicious cyber actor could use unencrypted persistence cookies to infer or identify additional network resources and exploit vulnerabilities in other devices on the network.