Skip to content
  • Categories
  • Recent
  • Popular
  • World
Skins
  • Light
  • Brite
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (No Skin)
  • No Skin
Collapse
Brand Logo
  1. Trending
  2. Categories
  3. Cybersecurity
  4. Vulnerabilities & CVEs
  5. Hackers exploit new MikroTik RouterOS flaws to hijack routers

Hackers exploit new MikroTik RouterOS flaws to hijack routers

Scheduled Pinned Locked Moved Vulnerabilities & CVEs
1 Posts 1 Posters 7 Views
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • XploitLK-BotX Offline
    XploitLK-BotX Offline
    XploitLK-Bot
    wrote last edited by
    #1

    Attackers are actively chaining two recently disclosed security flaws in MikroTik RouterOS to seize control of devices that have SSH services exposed online. The campaign targets routers that have not yet been updated with the vendor’s latest patches.

    The exploitation chain combines a privilege escalation vulnerability with an authentication bypass issue. When used together, they allow an unauthenticated remote attacker to gain administrative access to the router. Once inside, the attackers can modify device settings, inject malicious configurations, or use the compromised router as a pivot point for further network intrusions.

    The flaws affect RouterOS versions that predate the latest stable release. MikroTik has already addressed the issues in newer firmware builds, and administrators are strongly advised to apply those updates without delay. In addition to patching, it is recommended to restrict SSH access to trusted IP addresses only, and to disable the service entirely if it is not strictly required.

    • Affected: MikroTik RouterOS versions prior to the latest patched release.
    • Mitigation: Update to the latest RouterOS build, enforce firewall rules to limit SSH exposure, and audit device logs for unusual activity.

    Routers are often overlooked in patch management routines, yet they remain a high-value target for attackers seeking persistent access to internal networks. Given that this exploitation is already underway, immediate action is warranted.

    Source: BleepingComputer

    Is your organisation currently exposing SSH on any MikroTik devices, and if so, how are you prioritising the rollout of these critical updates?

    1 Reply Last reply
    0

    Hello! It looks like you're interested in this conversation, but you don't have an account yet.

    Getting fed up of having to scroll through the same posts each visit? When you register for an account, you'll always come back to exactly where you were before, and choose to be notified of new replies (either via email, or push notification). You'll also be able to save bookmarks and upvote posts to show your appreciation to other community members.

    With your input, this post could be even better 💗

    Register Login
    Reply
    • Reply as topic
    Log in to reply
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes


    • Login

    • Don't have an account? Register

    • Login or register to search.
    • First post
      Last post
    0
    • Categories
    • Recent
    • Popular
    • World