Cyble·2d ago highInside the Telecom Attack Surface: SS7, BGP Hijacking, and the Technical Reality of Nation-State Intrusions#ss7#bgp#telecom in the wild 5 min
Full Disclosure·4d ago[0day-rubbish] Teltonika RutOS 00.07.06.21 Authenticated ipsec.lua logread command injection with reflected output (8.8)#teltonika#rutos#command-injectionVulnerability
Cyber Security News·4d ago highD-Link Router Hit by CVSS 10.0 Flaw Exploitable Remotely Without Authentication#d-link#dir-822a#router 3 sources 3 min
The Hacker News·18d ago highChina-Made ZBT Routers Ship With Two Implants Giving Unauthenticated Attackers Root Access#backdoor#c2#cve in the wild 6 min
Exploit-DB·27d ago[webapps] Linksys E1200_2.0.04 - Unauthenticated OS Command Injection#command-injection#e1200#exploit-dbExploit / PoC
CERT/CC Vulnerability Notes·Aug 21, 2026VU#756733: Calix GS7 XGS GS5239XG residential router contains missing authentication vulnerability#calix#cert-vu#miniupnpdVulnerability
Palo Alto Unit 42·Aug 19, 2026A Deep Dive Into Attempted Exploitation of CVE-2023#command-injection#condi#iot-botnet in the wild 15 min1
Exploit-DB·Aug 17, 2026[remote] ipTIME A3004T - Remote Code Execution#firmware#iptime#pocExploit / PoC
Exploit-DB·Aug 11, 2026[dos] LuCI DHCPv6 - Lease Hostname Stored Cross-Site Scripting#dhcpv6#luci#openwrtExploit / PoC