Chinese-Made Zbtlink Routers Ship With Backdoor That Opens Unauthenticated Root Shells
Cybersecurity researchers have disclosed details of a factory-shipped backdoor implanted in at least 20 Chinese router models from Zbtlink. According to a…
Cybersecurity researchers have disclosed details of a factory-shipped backdoor implanted in at least 20 Chinese router models from Zbtlink. According to a…
Eclypsium is a cybersecurity firm focused on firmware and hardware security. They previously highlighted the risks of BMCs as attack targets for…
OpenWrt has released versions 24.10.8 and 25.12.5 to patch a critical DHCPv6 stack overflow vulnerability, CVE-2026-53921, rated 9.8 on CVSS 3.1. The…
Cybersecurity researchers at ESET have discovered 11 old, Microsoft-signed UEFI shim bootloaders that could be exploited to bypass Secure Boot protections on…
Researchers at firmware security firm Binarly have discovered six new vulnerabilities in U-Boot, the widely used bootloader for devices ranging from home…
Binarly is a firmware security company that discovered six new vulnerabilities in U-Boot, including two code-execution flaws. They published advisories BRLY-2026-037 through…
Security firm runZero has disclosed seven unpatched vulnerabilities in FatFs, a widely used filesystem library for FAT and exFAT formats, embedded in…
Apple has released a firmware update for Beats Studio Buds wireless earbuds to address a high-severity vulnerability, CVE-2025-20701 (CVSS 8.8), that could…