logo

US considers banning TP-Link routers over cybersecurity risks

ID: f8502b14-a82d-51ae-a3a0-f15f2a1fa286

STIX ID: report--f8502b14-a82d-51ae-a3a0-f15f2a1fa286

Feed Name: Bleeping Computer

Threat Score
85/100

Date Published: 2024-12-18

Date Updated: 2026-03-27

Author: Sergiu Gatlan

...
...

U.S. agencies are investigating TP-Link after reports that a large botnet of compromised SOHO routers—predominantly TP-Link devices and tracked by Microsoft as Quad7/CovertNetwork-1658/xlogin—has been used by Chinese threat actors to perform password-spray operations and steal credentials, enabling further network exploitation; the probe has prompted subpoenas and consideration of bans given TP-Link's dominant U.S. market presence and device use in government networks.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.