Vulnerabilities Unpatched Flaw in Legacy D-Link NAS Devices Exploited Days After Disclosure Exploitation attempts targeting CVE-2024-10914, a recently disclosed ‘won’t fix’ vulnerability affecting outdated D-Link NAS devices. Eduard KovacsNovember 14, 2024
IoT Security Many Legacy D-Link NAS Devices Exposed to Remote Attacks via Critical Flaw D-Link warns of a critical-severity command injection vulnerability impacting multiple discontinued NAS models. Ionut ArghireNovember 11, 2024
Vulnerabilities ‘NsaRescueAngel’ Backdoor Account Again Discovered in Zyxel Products Critical vulnerabilities in discontinued Zyxel NAS products allow unauthenticated attackers to execute arbitrary code and OS commands. Ionut ArghireJune 5, 2024
Network Security QNAP Rushes Patch for Code Execution Flaw in NAS Devices QNAP rolls out patches for multiple vulnerabilities after proof-of-concept exploit published for a remote code execution vulnerability. Ionut ArghireMay 21, 2024
IoT Security Exploitation Attempts Target Unpatched Flaw Affecting Many D-Link NAS Devices Unpatched D-Link NAS device vulnerability CVE-2024-3273, potentially affecting many devices, is being exploited in the wild. Eduard KovacsApril 9, 2024
Network Security Major Security Flaws in Zyxel Firewalls, Access Points, NAS Devices Zyxel patches at least 15 security flaws that expose users to authentication bypass, command injection and denial-of-service attacks. Ryan NaraineNovember 30, 2023
Vulnerabilities Western Digital, Synology NAS Vulnerabilities Exposed Millions of Users’ Files Critical vulnerabilities discovered in WD and Synology NAS devices could have exposed the files of millions of users. Eduard KovacsAugust 9, 2023
IoT Security 30k Internet-Exposed QNAP NAS Devices Affected by Recent Vulnerability Censys finds 30,000 internet-exposed QNAP appliances that are likely affected by a recently disclosed critical code injection vulnerability. Ionut ArghireFebruary 1, 2023