ShellCodeX Intelligence Brief
CRITICAL
Cybersecurity
Zbtlink routers contain factory backdoor enabling unauthenticated root shell
Source headline: Chinese-Made Zbtlink Routers Ship With Backdoor That Opens Unauthenticated Root Shells
Threat level
Critical
Signal strength
90/100
Source confidence
1 source
Published
2 hours ago
Intelligence Summary
VulnCheck says multiple Zbtlink router firmware images include a factory-shipped backdoor. The implant is present across at least 21 firmware versions spanning more than two years. It is designed to start automatically and attempt to beacon to infrastructure associated with China. The backdoor can expose an unauthenticated root shell, allowing full device takeover. Owners should treat affected routers as compromised and upgrade or replace with known-clean firmware if available.
Recommended Action
Prioritize immediate review, validate exposure, and patch or mitigate affected systems.
Topics
Original reporting
The Hacker News
Chinese-Made Zbtlink Routers Ship With Backdoor That Opens Unauthenticated Root Shells
Open original source