Security News

Juniper patches critical auth bypass in Session Smart routers
2025-02-18 17:07

​Juniper Networks has patched a critical vulnerability that allows attackers to bypass authentication and take over Session Smart Router (SSR) devices. [...]

Juniper Session Smart Routers Vulnerability Could Let Attackers Bypass Authentication
2025-02-18 12:18

Juniper Networks has released security updates to address a critical security flaw impacting Session Smart Router, Session Smart Conductor, and WAN Assurance Router products that could be...

Chinese hackers breach more US telecoms via unpatched Cisco routers
2025-02-14 12:56

China's Salt Typhoon hackers are still actively targeting telecoms worldwide and have breached more U.S. telecommunications providers via unpatched Cisco IOS XE network devices. [...]

Swap EOL Zyxel routers, upgrade Netgear ones!
2025-02-05 14:11

There will be no patches for EOL Zyxel routers under attack via CVE-2024-40891, the company has confirmed. Meanwhile, Netgear has issued patches for critical flaws affecting its routers and...

Zyxel won’t patch newly exploited flaws in end-of-life routers
2025-02-04 21:22

Zyxel has issued a security advisory about actively exploited flaws in CPE Series devices, warning that it has no plans to issue fixing patches and urging users to move to actively supported models. [...]

Netgear warns users to patch critical WiFi router vulnerabilities
2025-02-04 16:33

Netgear has fixed two critical remote code execution and authentication bypass vulnerabilities affecting multiple WiFi routers and warned customers to update their devices to the latest firmware...

Someone is slipping a hidden backdoor into Juniper routers across the globe, activated by a magic packet
2025-01-25 11:12

Who could be so interested in chips, manufacturing, and more, in the US, UK, Europe, Russia... Someone has been quietly backdooring selected Juniper routers around the world in key sectors...

Juniper enterprise routers backdoored via “magic packet” malware
2025-01-23 17:38

A stealthy attack campaign turned Juniper enterprise-grade routers into entry points to corporate networks via the “J-magic” backdoor, which is loaded into the devices’ memory and spawns a reverse...

Custom Backdoor Exploiting Magic Packet Vulnerability in Juniper Routers
2025-01-23 14:55

Enterprise-grade Juniper Networks routers have become the target of a custom backdoor as part of a campaign dubbed J-magic. According to the Black Lotus Labs team at Lumen Technologies, the...

Hackers Exploit Zero-Day in cnPilot Routers to Deploy AIRASHI DDoS Botnet
2025-01-22 13:53

Threat actors are exploiting an unspecified zero-day vulnerability in Cambium Networks cnPilot routers to deploy a variant of the AISURU botnet called AIRASHI to carry out distributed...