Government US, Allies Warn of Russian Cyberattacks Targeting Critical Infrastructure Routers Multiple state-sponsored APTs are compromising poorly secured devices across critical infrastructure sector networks. Ionut ArghireJuly 14, 2026
Vulnerabilities Unpatched Backdoor in Tenda Firmware Grants Admin Access to Devices Tracked as CVE-2026-11405, the vulnerability allows unauthenticated attackers to access a device's web management interface. Ionut ArghireJuly 9, 2026
Malware & Threats Mirai Botnet Targets Flaw in Discontinued D-Link Routers The exploitation of the command injection vulnerability started one year after public disclosure and PoC exploit code publication. Ionut ArghireApril 22, 2026
Vulnerabilities Hackers Fail to Exploit Flaw in Discontinued TP-Link Routers In-the-wild exploitation has been ongoing for a year, but no successful payload execution has been observed. Ionut ArghireApril 20, 2026
Vulnerabilities TP-Link Patches High-Severity Router Vulnerabilities The security defects could be used to bypass authentication, execute arbitrary commands, and decrypt configuration files. Ionut ArghireMarch 27, 2026
Network Security FCC Bans New Routers Made Outside the US Over National Security Risks The ban aligns with a White House determination that all routers produced abroad are a threat to national security. Ionut ArghireMarch 25, 2026
Vulnerabilities Juniper Networks PTX Routers Affected by Critical Vulnerability An out-of-band security update for Junos OS Evolved patches the remote code execution vulnerability CVE-2026-21902. Eduard KovacsFebruary 27, 2026
Vulnerabilities Zyxel Patches Critical Vulnerability in Many Device Models The issue impacts the UPnP function of multiple device models and could be exploited for remote code execution. Ionut ArghireFebruary 26, 2026
Mobile & Wireless Broadcom Wi-Fi Chipset Flaw Allows Hackers to Disrupt Networks The vulnerability was discovered in Asus routers, but all devices using the affected chipset are susceptible to attacks. Eduard KovacsJanuary 13, 2026
Nation-State Over 50,000 Asus Routers Hacked in ‘Operation WrtHug’ A Chinese threat actor is exploiting known vulnerabilities in discontinued Asus devices in an Operational Relay Box (ORB) facilitation campaign. Ionut ArghireNovember 20, 2025
Vulnerabilities Unauthenticated RCE Flaw Patched in DrayTek Routers The security defect can be exploited remotely via crafted HTTP/S requests to a vulnerable device’s web user interface. Ionut ArghireOctober 3, 2025
Network Security Cisco Patches Zero-Day Flaw Affecting Routers and Switches The security defect allows remote attackers with administrative privileges to execute arbitrary code as the root user. Ionut ArghireSeptember 25, 2025
ICS/OT Vulnerabilities Expose Helmholz Industrial Routers to Hacking Eight vulnerabilities, including ones allowing full control over a device, have been discovered and patched in Helmholz REX 100 industrial routers. Eduard KovacsJuly 22, 2025
Vulnerabilities Organizations Warned of Vulnerability Exploited Against Discontinued TP-Link Routers CISA warns that a vulnerability impacting multiple discontinued TP-Link router models is exploited in the wild. Ionut ArghireJune 17, 2025
ICS/OT Study Identifies 20 Most Vulnerable Connected Devices of 2025 Routers are the riskiest devices in enterprise networks as they contain the most critical vulnerabilities, a new Forescout report shows. Ionut ArghireApril 10, 2025
Network Security Questions Remain Over Attacks Causing DrayTek Router Reboots DrayTek has shared some clarifications regarding the recent attacks causing router reboots, but some questions remain unanswered. Eduard KovacsApril 2, 2025
Network Security Vulnerability Exploitation Possibly Behind Widespread DrayTek Router Reboots DrayTek routers around the world are rebooting and the vendor’s statement suggests that it may involve the exploitation of a vulnerability. Eduard KovacsMarch 25, 2025
Network Security Citrix Warns of Password Spraying Attacks Targeting NetScaler Appliances Citrix issues warning on password spraying attacks targeting NetScaler and NetScaler Gateway appliances deployed by organizations worldwide. Ionut ArghireDecember 16, 2024
Vulnerabilities D-Link Warns of RCE Vulnerability in Legacy Routers Six discontinued D-Link router models are affected by a remote code execution (RCE) vulnerability that will not be patched. Ionut ArghireNovember 20, 2024
Network Security New Vulnerabilities Expose Hundreds of Thousands of DrayTek Routers to Hacking Forescout has identified more than a dozen new vulnerabilities in DrayTek routers, exposing hundreds of thousands of devices to attacks. Eduard KovacsOctober 3, 2024