Security News

TP-Link 'smart' router proves to be anything but smart – just like its maker: Zero-day vuln dropped after silence
2019-03-28 19:40

Google security engineer emits SR20 PoC exploit after manufacturer fails to respond TP-Link's all-in-one SR20 Smart Home Router allows arbitrary command execution from a local network connection,...

Cisco botched patches for its RV320/RV325 routers
2019-03-28 10:42

Cisco RV320 and RV325 WAN VPN routers are still vulnerable to attack through two flaws that Cisco had supposedly patched. #Cisco Small Business Routers still vulnerable to remote code execution &...

Huawei bungled router security, leaving kit open to botnets, despite alert from ISP years prior
2019-03-28 09:15

Chinese kit slinger was told of UPnP flaw in 2013, didn't do too much about it Exclusive Huawei bungled its response to warnings from an ISP's code review team about a security vulnerability...

Cisco Releases Flood of Patches for IOS XE and Small Business Routers
2019-03-27 21:48

The networking giant issued 27 patches impacting a wide range of its products running the ISO XE software.

Did you hear the one about Cisco routers using strcpy insecurely for login authentication? Makes you go AAAAA-AAAAAAAA *segfault*
2019-03-01 18:02

RV110W, RV130W and RV215W models need patching Cisco has patched three of its RV-series routers after Pen Test Partners (PTP) found them using hoary old C function strcpy insecurely in login...

Cisco Patches Critical Vulnerability in Wireless Routers
2019-03-01 13:48

Cisco released security patches this week to address a Critical vulnerability in several wireless routers that allows an attacker to remotely execute code on the impacted devices.  read more

Cisco Fixes Critical Flaw in Wireless VPN, Firewall Routers
2019-02-28 14:27

Cisco said that CVE-2019-1663, which has a CVSS score of 9.8, allows unauthenticated, remote attackers to execute arbitrary code.

Cisco SOHO wireless VPN firewalls and routers open to attack
2019-02-28 09:18

Cisco has released security fixes for several models of wireless VPN firewalls and routers, plugging a remote code execution flaw (CVE-2019-1663) that can be triggered via a malicious HTTP...

Active Scans Target Vulnerable Cisco Routers for Remote Code-Execution
2019-01-28 16:04

Cyberattackers are targeting a pair of just-patched vulnerabilities that allow remote unauthenticated information disclosure leading to remote code-execution.

Hackers Target Cisco Routers via Recently Patched Flaws
2019-01-28 13:20

Hackers have been scanning the Internet for Cisco Small Business routers affected by information disclosure and command injection vulnerabilities that were patched only days ago by the networking...