MikroTrick Chain Let Attackers Take Over MikroTik Routers Without a Password or SSH Key

Two MikroTik RouterOS SSH vulnerabilities chained together let attackers take full administrative control of Internet-exposed routers without a password, SSH key, or completed authentication.

The chain, which CERT Polska calls MikroTrick, combines an SSH state-machine flaw (CVE-2026-67279) with an argument-injection bug in the RouterOS login process (CVE-2026-86060). Attack logs date to at

Source: The Hacker News

Leave a Reply

Your email address will not be published. Required fields are marked *

Explore More

New GoSerpent Malware Targets Southeast Asian Governments and Diplomats for Espionage

New GoSerpent Malware Targets Southeast Asian Governments and Diplomats for Espionage Cybersecurity researchers have discovered a previously undocumented malware called GoSerpent that has been put to use in cyber attacks

Atomic Force Microscope high-speed video, stainless etching, bacteria, and more

Atomic Force Microscope high-speed video, stainless etching, bacteria, and more Source: Hacker News

Hyundai buys Boston Dynamics, Atlas humanoid to be used at vehicle plant by 2028

Hyundai buys Boston Dynamics, Atlas humanoid to be used at vehicle plant by 2028 Source: Hacker News