Topic: end-of-support devices

  • US Agencies Ordered to Replace Outdated Edge Devices

    US Agencies Ordered to Replace Outdated Edge Devices

    US federal agencies must remove all outdated public-facing network hardware within one year, as mandated by CISA's Binding Operational Directive 26-02 to address active exploitation of end-of-support devices. The directive establishes strict deadlines, requiring agencies to identify vulnerabiliti...

    Read More »
  • CISA Mandates Federal Agencies Replace Outdated Edge Devices

    CISA Mandates Federal Agencies Replace Outdated Edge Devices

    CISA mandates federal agencies to urgently replace end-of-life network hardware like routers and firewalls, as these unsupported devices are a critical vulnerability to cyberattacks. Agencies must follow strict deadlines, including creating an inventory within three months and fully replacing all...

    Read More »
  • Over 266,000 F5 BIG-IP Systems Vulnerable to Remote Hacks

    Over 266,000 F5 BIG-IP Systems Vulnerable to Remote Hacks

    Over 266,000 F5 BIG-IP systems are exposed online and vulnerable to remote attacks following a security breach by nation-state hackers who stole source code and details about undisclosed flaws. F5 has released patches for 44 vulnerabilities and strongly urges immediate updates, while CISA mandate...

    Read More »
  • F5 Issues Critical Patches for Stolen BIG-IP Vulnerabilities

    F5 Issues Critical Patches for Stolen BIG-IP Vulnerabilities

    F5 Networks issued critical security patches for its BIG-IP product line after a state-sponsored breach on August 9, 2025, which exposed proprietary source code and vulnerabilities, urging immediate installation to address 44 issues. The Cybersecurity and Infrastructure Security Agency (CISA) man...

    Read More »
  • Urgent: 50,000 Cisco Firewalls at Risk From Active Attacks

    Urgent: 50,000 Cisco Firewalls at Risk From Active Attacks

    Attackers are actively exploiting critical vulnerabilities CVE-2025-20333 and CVE-2025-20362 in around 50,000 Cisco ASA and FTD devices, enabling unauthorized remote code execution and access without authentication. Over 48,800 internet-facing devices remain unpatched, primarily in the U.S., with...

    Read More »
  • CISA Mandates Urgent Patching for Actively Exploited Cisco Zero-Day Flaws

    CISA Mandates Urgent Patching for Actively Exploited Cisco Zero-Day Flaws

    CISA has issued an emergency directive requiring U.S. federal agencies to immediately address two actively exploited critical vulnerabilities (CVE-2025-20333 and CVE-2025-20362) in Cisco ASA and FTD firewalls, which allow unauthenticated remote code execution. Agencies must inventory all affected...

    Read More »