Jacob Baines
banner
albinolobster0.bsky.social
Jacob Baines
@albinolobster0.bsky.social
CTO @ VulnCheck
Here is a follow-on rundown of CVE-2024-40890, affecting the HTTP interface of EOL Zyxel CPE routers. Don't forget to filter user input for `\n` 😉 Pairs quite nicely with the supervisor (backdoor) / zyuser user accounts.

vulncheck.com/blog/zyxel-h...
Zyxel HTTP Vulnerability - Blog - VulnCheck
As a follow-up to our previous Zyxel Telnet Vulnerabilities blog, VulnCheck examines CVE-2024-40890, a recently disclosed vulnerability in the HTTP interface of many end-of-life Zyxel CPE routers.
vulncheck.com
February 7, 2025 at 1:42 PM
Reposted by Jacob Baines
The security industry went 6-days without a new Known Exploited Vulnerability which is the longest length of time this year.

So do you think it was the threat actors or security researchers that went on holiday?

ELSE: What did we miss? 😝

#cybersecurity #infosecurity #infosec
December 3, 2024 at 2:24 PM