Skip to content
  • Blog Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form

TP-Link Patches Vulnerability Exposing VIGI Cameras to Remote Hacking

Posted on January 19, 2026January 19, 2026 By CWS

TP-Hyperlink has patched a critical vulnerability that may be exploited to take management of greater than 32 of its VIGI C and VIGI InSight sequence skilled surveillance digital camera fashions.

The safety gap, tracked as CVE-2026-0629 and labeled as excessive severity, is described in a TP-Hyperlink advisory revealed final week as an authentication bypass flaw affecting the password restoration function within the cameras’ native internet interface.

The flaw, in response to TP-Hyperlink, “permits an attacker on the LAN to reset the admin password with out verification by manipulating client-side state”, enabling them to realize full admin entry to the machine.

The vulnerability was found by Arko Dhar, co-founder and CTO of IoT cybersecurity firm Redinent Improvements.  

Dhar advised SecurityWeek that an attacker may exploit the vulnerability to realize full entry to the focused digital camera, together with its video feed and different performance. 

The researcher warned that the flaw could be exploited remotely and famous that on the time of discovery in October 2025 he had recognized greater than 2,500 internet-exposed cameras worldwide which will have been weak to assaults. Commercial. Scroll to proceed studying.

Nonetheless, he solely regarded for situations of a single affected digital camera mannequin. The precise variety of uncovered gadgets throughout all impacted fashions could also be a lot greater. 

TP-Hyperlink’s VIGI cameras are utilized by organizations in over 36 international locations and areas, primarily in Europe, Southeast Asia, and the Americas.

It’s not unusual for menace actors to focus on TP-Hyperlink merchandise of their assaults. CISA’s Recognized Exploited Vulnerabilities (KEV) catalog presently lists 5 TP-Hyperlink flaws exploited in assaults lately, however all of them affect wi-fi routers and vary extenders.

However, hackers usually exploit vulnerabilities in different digital camera manufacturers within the wild, making it necessary for organizations to not ignore the just lately disclosed flaw. 

Associated: No Patches for Vulnerabilities Permitting Cognex Industrial Digicam Hacking

Associated: Essential Vulnerabilities Patched in TP-Hyperlink’s Omada Gateways

Associated: CISA Warns of Avtech Digicam Vulnerability Exploited in Wild

Security Week News Tags:Cameras, Exposing, Hacking, Patches, Remote, TPLink, VIGI, Vulnerability

Post navigation

Previous Post: Jordanian Admits in US Court to Selling Access to 50 Enterprise Networks
Next Post: New Spear-Phishing Attack Abusing Google Ads to Deliver EndRAT Malware

Related Posts

Security Firms Hit by Salesforce–Salesloft Drift Breach Security Week News
The AI Arms Race: Deepfake Generation vs. Detection Security Week News
Qantas Confirms 5.7 Million Impacted by Data Breach Security Week News
MITRE Unveils AADAPT Framework to Tackle Cryptocurrency Threats  Security Week News
Nova Scotia Power Confirms Ransomware Attack, 280k Notified of Data Breach Security Week News
Scalekit Raises $5.5 Million to Secure AI Agent Authentication Security Week News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Google Gemini Prompt Injection Flaw Exposed Private Calendar Data via Malicious Invites
  • New Spear-Phishing Attack Abusing Google Ads to Deliver EndRAT Malware
  • TP-Link Patches Vulnerability Exposing VIGI Cameras to Remote Hacking
  • Jordanian Admits in US Court to Selling Access to 50 Enterprise Networks
  • ‘SolyxImmortal’ Information Stealer Emerges – SecurityWeek

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Google Gemini Prompt Injection Flaw Exposed Private Calendar Data via Malicious Invites
  • New Spear-Phishing Attack Abusing Google Ads to Deliver EndRAT Malware
  • TP-Link Patches Vulnerability Exposing VIGI Cameras to Remote Hacking
  • Jordanian Admits in US Court to Selling Access to 50 Enterprise Networks
  • ‘SolyxImmortal’ Information Stealer Emerges – SecurityWeek

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark