Critical MikroTik Vulnerability - Patch Now, (Sun, Sep 6th)
ID: 0a50b170-2dfe-59e6-95b2-4601f8982774
STIX ID: report--0a50b170-2dfe-59e6-95b2-4601f8982774
Feed Name: SANS ISC Diary
Threat Score
Mikrotik released a patch for an actively exploited SSH authentication bypass vulnerability; operators should assume compromise because attackers have been creating persistent accounts on affected devices. The patch will attempt to detect compromises and mark devices as "Flagged," but administrators must apply updates and investigate for added accounts and other indicators of persistence.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
