Telnet is a tool tracked across 13 threat clusters and 15 intelligence report mentions on ThreatCluster. First observed January 7, 2026; most recent activity July 16, 2026.
Telnet is a legacy remote access protocol that provides command-line access over TCP. In cybersecurity, it represents a high-risk attack surface due to plaintext credential transmission and frequent default or weak configurations on devices, enabling credential harvesting or remote compromise. Recent reports highlight ongoing threats: an 11-year Telnet-related vulnerability being actively exploited and long-standing Telnet bugs yielding root access, along with remote-access flaws in consumer networking gear such as TOTOLINK extenders, underscoring the enduring risk of Telnet-based exposure.
A critical vulnerability, CVE-2026-32746, has been discovered in the GNU InetUtils telnetd daemon, affecting all versions up to and including 2.7. This flaw allows unauthenticated remote attackers to execute arbitrary…
The TuxBot v3 Evolution is a newly discovered IoT botnet framework that targets a wide range of internet-connected devices, including ARM, MIPS, x86_64, PowerPC, and RISC-V architectures. It is designed for mass…
Recent analysis reveals that default credentials in Internet of Things (IoT) devices remain a significant security vulnerability. A guest diary by Adam Thorman highlights a case where multiple IP addresses of a newly…
A critical vulnerability in the GNU InetUtils telnet daemon (telnetd), tracked as CVE-2026-24061, allows attackers to bypass authentication and gain root access. Disclosed on January 20, 2026, the flaw has existed for…
Following U.S. military strikes on Iran, there is an anticipated increase in cyber warfare activities targeting U.S. operational technology and critical infrastructure. Iran is expected to retaliate with cyber attacks…
A critical security vulnerability, CVE-2025-65606, has been identified in the TOTOLINK EX200 wireless range extender, enabling remote authenticated attackers to gain full system control. The flaw, stemming from improper…
Organizations have been warned about exploited vulnerabilities in Linux that allow threat actors to obtain root privileges or bypass authentication through Telnet. These flaws enable attackers to gain shell access as…
A vulnerability in the Totolink range extender allows unauthorized device takeover due to an error in the firmware-upload handler. This flaw leads to the activation of an unauthenticated root-level Telnet service, which…
On January 19, 2026, a critical vulnerability in telnetd, CVE-2026-24061, was reported, allowing root access via Telnet. Additionally, two vulnerabilities in Cisco Secure Firewalls, CVE-2025-20333 and CVE-2025-20362,…
On June 29, 2026, Offensive Security released Kali Linux 2026.2, introducing nine new tools and significant improvements to VM boot times. The update includes enhancements to the GNOME 50 and KDE Plasma 6.6 desktop…