MicroTik Routers Under Attack in New Campaign
Labeled "MikroTrick" by researchers at CERT Polska who discovered and disclosed six vulnerabilities in the software, the campaign targets devices with SSH services reachable from the public internet
All topics
Labeled "MikroTrick" by researchers at CERT Polska who discovered and disclosed six vulnerabilities in the software, the campaign targets devices with SSH services reachable from the public internet
CVE-2026-82329 is a simple authentication bypass that can allow an attacker to get admin privileges quite easily
The chain leverages two distinct vulnerabilities—an authentication bypass and an unsafe .NET type instantiation flaw—to provide full server control without valid credentials.
This flaw allows remote, unauthenticated attackers to read sensitive data from internal network services or cloud metadata endpoints.
The vulnerability, which effectively provides unauthenticated administrative access to the RMM console, stems from two related security issues
The flaw (CVE-2026-50522) affects SharePoint Enterprise Server 2016 and 2019 as well as SharePoint Subscription service. Microsoft released the fix for this vulnerability on July 14.