Welcome to DU! The truly grassroots left-of-center political community where regular people, not algorithms, drive the discussions and set the standards. Join the community: Create a free account Support DU (and get rid of ads!): Become a Star Member Latest Breaking News Editorials & Other Articles General Discussion The DU Lounge All Forums Issue Forums Culture Forums Alliance Forums Region Forums Support Forums Help & Search

BumRushDaShow

(162,209 posts)
Thu Oct 16, 2025, 05:09 AM Oct 16

Cybersecurity order warns of "imminent risk" to federal agencies following possible breach

Source: CBS News

Updated on: October 15, 2025 / 5:34 PM EDT


The Cybersecurity and Infrastructure Security Agency on Wednesday issued a sweeping emergency order directing all federal agencies to immediately patch critical vulnerabilities in certain devices and software made by F5, a technology vendor, after confirming a nation-state cyber actor gained unauthorized access to F5's source code.

CISA — a part of the Department of Homeland Security which manages risks to the U.S.'s cyber and physical infrastructure — issued Emergency Directive 26-01 following the company's disclosure that a foreign threat actor had maintained long-term, persistent access to its internal development and engineering environments using source code.

Officials warned that attackers could exploit the vulnerabilities to steal credentials, move laterally through networks, and potentially take full control of targeted systems. F5 said they first discovered the attack in August but did not disclose exactly when it began.

"This directive addresses an imminent risk," said Nick Anderson, CISA's Executive Assistant Director for Cybersecurity, during a news briefing Wednesday. "A nation-state actor could exploit these flaws to gain unauthorized access to embedded credentials and API keys. That's an unacceptable risk to federal networks." F5 is a publicly traded American technology company headquartered in Seattle, Washington.

Read more: https://www.cbsnews.com/news/f5-source-code-cybersecurity-infrastructure-security-agency-emergency-order/



Link to CISA ALERT - CISA Directs Federal Agencies to Mitigate Vulnerabilities in F5 Devices
2 replies = new reply since forum marked as read
Highlight: NoneDon't highlight anything 5 newestHighlight 5 most recent replies
Cybersecurity order warns of "imminent risk" to federal agencies following possible breach (Original Post) BumRushDaShow Oct 16 OP
This message was self-deleted by its author Ponietz Oct 16 #1
Trump has been eliminating security protections and workers. Irish_Dem Oct 16 #2

Response to BumRushDaShow (Original post)

Irish_Dem

(76,730 posts)
2. Trump has been eliminating security protections and workers.
Thu Oct 16, 2025, 08:11 AM
Oct 16

Seems this is his goal, to allow China and Russia access to our federal government operations.

Latest Discussions»Latest Breaking News»Cybersecurity order warns...