I know they have to say that ...
"Organizations should ensure all critical systems are fully patched and use this moment to reinforce security awareness training with staff."
... and it's "never too late" and all, but if you haven't yet put in place security awareness, patching, monitoring, response, continuity and recovery mechanisms, and countering-disinformation strategies, then you're kind of asking for it. These are not things done overnight. Hackers tend not to give you a heads up even at the best of times.
At least it ought to raise awareness amongst corporate and government leaders, perhaps even in time for the main feature, China, when that eventually kicks off ... 2027?, 2028?, 2029? ...
(Sorry for the A/C but other commentards have been getting a bit feral recently.)