Back to the feed

~/article/hackers-exploit-routeros-flaws-to-hijack-mikrotik-devices-without-authen-1sj0z4
mediumSource: Help Net Security

Hackers exploit RouterOS flaws to hijack MikroTik devices without authentication

Attackers are exploiting a chain of RouterOS vulnerabilities to hijack MikroTik devices with SSH open to the internet, CERT Polska found. CERT Polska, Poland’s national CSIRT team, have discovered six vulnerabilities in RouterOS and coordinated their disclosure with MikroTik. Among the six, two combined let an attacker take full control of a device without authentication, provided the device…

Read at the source

Summary written for cymesh.dev. The full article lives at Help Net Security.

Topics

~/cymesh.net

Certificates expire quietly

cymesh.net watches your TLS and SSL certificates and warns you before one lapses.

monitorsTLS/SSL expiry, chain and hostnamealertsemail, ahead of the expiry datescopenon-intrusive, read-only checks

Related

~/related/hackers-exploit-routeros-flaws-to-hijack-mikrotik-devices-without-authen-1sj0z4