Skip to content
Telcos May Have Received Early Warning of Critical Telnet Vulnerability

Telcos May Have Received Early Warning of Critical Telnet Vulnerability

First seen 12 Feb 2026, 08:51 UTC

Article Content

Browse articles
ThreatCluster AI
ThreatCluster March 12, 2026 at 16:10 UTC

A critical vulnerability in GNU InetUtils telnetd, identified as CVE-2026-24061, was likely known to telecommunications companies prior to its public disclosure. Global Telnet traffic dropped significantly on January 14, 2026, six days before the official security advisories were released on January 20, indicating potential advance warning of the flaw, which has a CVSS score of 9.8 and allows for trivial root access exploitation.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated 184d ago How this analysis works

Timeline

2026-01-14
Global Telnet traffic dropped 65%
2026-01-20
Public disclosure of CVE-2026-24061
2026-01-21
CVE-2026-24061 published
2026-01-21
First public PoC released
2026-01-26
CVE-2026-24061 added to CISA KEV

More articles in this cluster (2)

Following this threat?

Track CVE-2026-24061 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed