Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
MikroTik Urges Immediate Updates for Critical RouterOS Flaws

MikroTik Urges Immediate Updates for Critical RouterOS Flaws

Posted on September 8, 2026 By CWS

Network equipment manufacturer MikroTik has announced the release of patches for six critical vulnerabilities found in its RouterOS software. The company strongly advises users to install these updates promptly, as two of the vulnerabilities have been reportedly exploited by attackers.

Exploited Vulnerabilities and Impact

The vulnerabilities, collectively referred to as MikroTrick, allow malicious actors to bypass authentication mechanisms and gain control over affected devices, according to CERT Poland. MikroTik’s advisory highlights the need for immediate patching and directs users to CERT Poland’s detailed guidance for further information.

Although most device configurations are not at risk, MikroTik recommends users block SSH access from untrusted sources. Devices that have been compromised will display a “Flagged” entry in their logs, indicating a security breach.

Details of the Security Flaws

CERT Poland has confirmed that two of the vulnerabilities have been used in tandem to compromise devices. The organization has identified three primary vulnerabilities: CVE-2026-67276, an SSH authentication bypass issue with a CVSS score of 9.2; CVE-2026-86060, related to SSH session privilege manipulation, also scoring 9.2; and CVE-2026-67277, a memory disclosure and denial-of-service flaw with a CVSS score of 8.8.

Attackers have been exploiting these vulnerabilities since early September, creating unauthorized accounts named ‘ops’ and launching attacks from IP addresses 82.192.72.4 and 103.102.31.18. Users are encouraged to investigate any signs of these artifacts on their devices.

Updating to Secure Versions

MikroTik users are urged to upgrade their devices to the latest versions of RouterOS, specifically 7.25beta3, 7.24.2, 7.23.4, or 6.49.21, to mitigate these risks. The updates also address other vulnerabilities, including CVE-2026-67278, which allows TLS server impersonation; CVE-2026-67279, permitting unauthorized file manipulation; and CVE-2026-67281, enabling disclosure of root-owned files.

A recent scan by the Shadowserver Foundation identified over 120,000 MikroTik devices with publicly accessible SSH services, underscoring the urgency of applying these patches.

By taking immediate action, users can protect their devices from potential exploitation and ensure the ongoing security of their network infrastructure.

Security Week News Tags:authentication bypass, CERT Poland, Cybersecurity, device security, MikroTik, network security, Patches, RouterOS, SSH vulnerabilities, Vulnerabilities

Post navigation

Previous Post: Critical Vulnerabilities in FreeIPA Allow Unauthorized Access
Next Post: Panzer Ransomware Impacting Italian Tech and Manufacturing

Related Posts

VS Code Flaws in GitHub Codespaces Risk Supply Chain Attacks VS Code Flaws in GitHub Codespaces Risk Supply Chain Attacks Security Week News
Microsoft Patch Tuesday Covers WebDAV Flaw Marked as ‘Already Exploited’ Microsoft Patch Tuesday Covers WebDAV Flaw Marked as ‘Already Exploited’ Security Week News
Managing Technical Debt in AI-Driven Software Development Managing Technical Debt in AI-Driven Software Development Security Week News
Code Execution Flaws Haunt Adobe Acrobat Reader, Adobe Commerce Code Execution Flaws Haunt Adobe Acrobat Reader, Adobe Commerce Security Week News
Pro-Russian Hackers Claim Cyberattack on French Postal Service Pro-Russian Hackers Claim Cyberattack on French Postal Service Security Week News
Nevada State Offices Closed Following Disruptive Cyberattack Nevada State Offices Closed Following Disruptive Cyberattack Security Week News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • AI Bots Vulnerable to Security Breaches via Phishing
  • Urgent Fix for Critical Zero-Day in N-central Released
  • Panzer Ransomware Impacting Italian Tech and Manufacturing
  • MikroTik Urges Immediate Updates for Critical RouterOS Flaws
  • Critical Vulnerabilities in FreeIPA Allow Unauthorized Access

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • September 2026
  • August 2026
  • July 2026
  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • AI Bots Vulnerable to Security Breaches via Phishing
  • Urgent Fix for Critical Zero-Day in N-central Released
  • Panzer Ransomware Impacting Italian Tech and Manufacturing
  • MikroTik Urges Immediate Updates for Critical RouterOS Flaws
  • Critical Vulnerabilities in FreeIPA Allow Unauthorized Access

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark