"Exploited: Critical Backdoor Security Flaw in 92,000 D-Link NAS Devices"

TL;DR Summary
Over 92,000 end-of-life D-Link NAS devices are being actively targeted by attackers exploiting a critical remote code execution (RCE) zero-day flaw, resulting from a backdoor and command injection issue. The vulnerability allows threat actors to deploy Mirai malware variants, potentially leading to unauthorized access, data modification, or denial of service. D-Link has stated that these devices are no longer supported and recommends retiring or replacing them, although it's also advised owners to ensure the devices have the latest firmware.
- Critical RCE bug in 92,000 D-Link NAS devices now exploited in attacks BleepingComputer
- Critical takeover vulnerabilities in 92000 D-Link devices under active exploitation Ars Technica
- Over 92,000 exposed D-Link NAS devices have a backdoor account BleepingComputer
- Over 92,000 Internet-facing D-Link NAS devices can be easily hacked Security Affairs
- Thousands of D-Link NAS devices have serious backdoor security issues TechRadar
Reading Insights
Total Reads
0
Unique Readers
1
Time Saved
2 min
vs 3 min read
Condensed
84%
494 → 79 words
Want the full story? Read the original article
Read on BleepingComputer