ShellCodeX
Tools • Events • News • Insights
ShellCodeX Intelligence Brief
CRITICAL Cybersecurity

Zbtlink routers contain factory backdoor enabling unauthenticated root shell

Source headline: Chinese-Made Zbtlink Routers Ship With Backdoor That Opens Unauthenticated Root Shells

Threat level Critical
Signal strength 90/100
Source confidence 1 source
Published 2 hours ago

Intelligence Summary

VulnCheck says multiple Zbtlink router firmware images include a factory-shipped backdoor. The implant is present across at least 21 firmware versions spanning more than two years. It is designed to start automatically and attempt to beacon to infrastructure associated with China. The backdoor can expose an unauthenticated root shell, allowing full device takeover. Owners should treat affected routers as compromised and upgrade or replace with known-clean firmware if available.

Recommended Action

Prioritize immediate review, validate exposure, and patch or mitigate affected systems.

Topics

#supply-chain #backdoor #unauthenticated #firmware #routers #root-shell
Original reporting The Hacker News Chinese-Made Zbtlink Routers Ship With Backdoor That Opens Unauthenticated Root Shells
Open original source