China-Made ZBT Routers Ship With Two Implants Giving Unauthenticated Attackers Root Access

VulnCheck has disclosed two previously undocumented factory implants in firmware for routers built by Shenzhen Zhibotong Electronics (ZBT), each of which gives an unauthenticated remote attacker the ability to run commands as root on affected devices.

The implants, named SPEAKINGSTONE and DARKLANTERN by the company’s zero-day research team, are tracked as CVE-2026-74232 and CVE-2026-74233.

Source: The Hacker News

Leave a Reply

Your email address will not be published. Required fields are marked *

Explore More

Building reliable agentic AI systems

Building reliable agentic AI systems Source: Hacker News

Tailcat

Tailcat Source: Hacker News

Attack Update: Top 5 Attack-IPs auf doode.info – 13.07.2026

Watchtower Attack Update. Hier die aktuellen Top 5 Attack-IPs, die auf doode.info klopfen. 89.167.35.212 — 111 requests (recent log) 64.227.190.95 — 42 requests (recent log) 118.25.113.93 — 41 requests (recent