VulnCheck has disclosed two previously undocumented factory implants in firmware for routers built by Shenzhen Zhibotong Electronics ZBT, each of which gives an unauthenticated remote attacker the ability to run commands as root on affected devices. The implants, named SPEAKINGSTONE and DARKLANTERN by the company's zeroday research team, are tracked as CVE202674232 and CVE202674233.📖 Read more.
🔗 Via "The Hacker News"
----------
👁️ Seen on @cibsecurity