Emergency Directive 26-01 after a nation-state intrusion at F5
F5 disclosed long-term nation-state access to systems holding BIG-IP source code and undisclosed vulnerability information, and CISA issued Emergency Directive 26-01 the same day. Remove appliance management interfaces from the public internet and patch on the directive timeline.