On April 3, 2025, Ivanti disclosed CVE-2025-22457, a critical buffer overflow vulnerability affecting Ivanti Connect Secure and other products. The vulnerability allows unauthenticated remote code execution, and…
On March 11, 2026, international law enforcement agencies executed Operation Lightning, dismantling the SocksEscort proxy network, which had compromised over 369,000 routers and IoT devices across 163 countries. The…
A new strain of malware, dubbed KadNap, has infected over 14,000 Asus routers, forming a botnet that powers a cybercrime proxy network known as Doppelgänger. The botnet utilizes a custom Kademlia Distributed Hash Table…
The KadNap malware has infected over 14,000 edge devices, primarily targeting ASUS routers, to create a decentralized proxy botnet. This botnet utilizes a custom version of the Kademlia Distributed Hash Table protocol,…
Asus has identified a critical authentication bypass vulnerability (CVE-2025-59367) affecting its DSL-AC51, DSL-AC750, and DSL-N16 router models. This flaw allows remote, unauthenticated attackers to gain full control…
Operation WrtHug has compromised over 50,000 outdated ASUS routers, primarily in Taiwan, the U.S., and Russia, forming a significant botnet. The operation exploits multiple vulnerabilities in end-of-life devices,…
Operation WrtHug has compromised over 50,000 outdated ASUS routers globally, primarily affecting users in Taiwan, the U.S., and Russia. This operation has pulled these routers into a large malicious botnet, exploiting…
Thousands of ASUS routers have been compromised in a hijacking campaign linked to China, identified as Operation 'WrtHug.' The primary impact is on users in Taiwan, but networks in the United States, Russia, Southeast…
The Federal Communications Commission (FCC) voted to rescind cybersecurity rules established after the Salt Typhoon hack, which targeted U.S. telecommunications. This rollback, occurring in December 2025, eliminates…
A massive hacking operation known as 'WrtHug' has compromised over 50,000 ASUS routers worldwide, primarily targeting discontinued devices with known vulnerabilities. The campaign is attributed to a Chinese threat…