Blog Layout

 Security Vulnerabilities Were Found In These Popular WiFi Routers

sccomputerguys • Dec 14, 2021

Most people have a home network these days which connects their computers and tablets, allows them to stream video from their Smart TVs, and surf the web from their phones using their home network rather than their cellphone's data plan.

If you have a home network then you should keep reading. Recently security researchers tested nine of the most popular WiFi routers on the market today and found a staggering 226 security flaws even on routers that were running the latest firmware.

The routers tested are offered by some of the biggest names in the industry including D-Link, Netgear, Asus, AVM, Edimax, TP-Link, Linksys, and Synology. These are used by millions of people around the world. In terms of total numbers the worst offender was TP-Link's Archer AX6000 router which was found to have 32 security issues. The Synology RT-2600AC was right behind it with 30 security flaws ripe for exploitation.

The research was conducted by IoT Inspector in collaboration with CHIP magazine and the group focused specifically on models popular with home and small business users.

Florian Lukavsky Founder of IoT Inspector had this to say about the project:

"For Chip's router evaluation , vendors provided them with current models , which were upgrade to the latest firmware version. The firmware versions were automatically analyzed by IoT Inspector and checked for more than 5 , 000 CVEs and other security issues."

Although a broad range of issues were discovered in the routers tested broadly speaking they fell into several common categories.

T he most common issues includ ed :

  • Outdated Linux kernel in the firmware
  • Outdated multimedia and VPN functions
  • Over-reliance on older versions of BusyBox
  • Use of weak default passwords like "admin"
  • And the presence of hardcoded credentials in plain text form

Whatever model you purchased the two biggest and best things you can do to make your router more secure are changing the password on first use and enabling automatic updates.  It's by no means a perfect solution but it will go a long way toward minimizing your risk.

By sccomputerguys 22 Jul, 2022
Do you own one or more of the following products made by Cisco? The RV110W Wireless-N VPN Firewall The RV130 VPN Router The RV130W Wireless-N Multifunction VPN Router The RV215W Wireless-N VPN ...
By sccomputerguys 21 Jul, 2022
Do you use Microsoft Teams?  If so, you'll be thrilled to know that the Redmond Giant is continuing to pour resources into improving the software with a specific focus on audio and ...
By sccomputerguys 20 Jul, 2022
Corporate branding can be worth its weight in gold and certain images are absolutely iconic.  The Golden Arches, the Nike "swoosh," and Apple's Apple all come to mind. Logo images give companies ...
By sccomputerguys 19 Jul, 2022
Remember the Heartbleed scare we had a couple years back?  It was a nasty side-channel attack that was somewhat exotic and difficult to pull off, and it was absolutely devastating and sent ...
By sccomputerguys 18 Jul, 2022
Microsoft Exchange servers are once more in the crosshairs of hackers around the world.  Most recently, hacking groups have been specifically targeting them to deploy BlackCat ransomware. As is common among ransomware ...
By sccomputerguys 16 Jul, 2022
If you grew up in the days before the internet, it's absolutely staggering to think of all the ways that mobile technology has changed our lives (and mostly for the better). Remember ...
By sccomputerguys 15 Jul, 2022
It may seem as though Internet Explorer is the browser that will not die, but according to Microsoft, it is now a step closer to breathing its last virtual breath. Microsoft has ...
By sccomputerguys 14 Jul, 2022
If you're involved with IT Security at any level and if your network includes Linux servers, keep a watchful eye out for the new Panchan botnet. It first appeared in the wilds ...
By sccomputerguys 13 Jul, 2022
These days, companies spend significant sums of money to protect themselves from cyber criminals.  The threat matrix is vast, and attacks can come from almost any quarter. That is why many companies ...
By sccomputerguys 12 Jul, 2022
Do you receive healthcare of any kind from Kaiser Permanente?  If so, be aware that they recently published a data breach notification indicating that an unidentified attacker accessed an email account that ...
More Posts
Share by: