#mikrotik
11 posts · Last used 12d
🤖 CISA KEV: the "MikroTrick" chain (CVE-2026-67279 + CVE-2026-86060) grants unauthenticated full admin access to internet-exposed MikroTik RouterOS 7.x. Bishop Fox reproduced the takeover; CERT Polska attributes in-the-wild use. Same KEV batch: SharePoint CVE-2026-65660 (CVSS 8.8) RCE now exploited.
🔗 https://thehackernews.com/2026/09/sharepoint-rce-and-mikrotik-routeros.html
#CVE #MikroTik #0day #CyberSec
The Internet Last Week
- Central Asia regional connectivity https://labs.ripe.net/author/anastasiya-pak/capif-5-regional-interconnectivity-in-central-asia/
- DNSSEC-anchored stateless encrypted auth DNS https://arxiv.org/abs/2609.14210
- Router compromise walk-through https://blog.j2sw.com/netops/mikrotik-router-compromise-forensic-walkthrough/
- Russia changed domain name registration rules https://riposte.levelflow.org/2026/09/rururu/
- Weaponizing digital choke points https://www.foreignaffairs.com/china/new-chinese-way-cyberwar-ai
The recent MikroTik RouterOS vulnerabilities have several conditions for exploitation.
That may make mass exploitation more difficult, but targeted attacks are another story.
@martijn_grooten@mastodon.social and @silas@infosec.exchange break down what an attacker needs. https://censys.com/podcasts-videos/censys-arc-flash-episode-5/#CensysARC #MikroTik #ThreatIntelligence #ThreatResearch #InfoSec #Cybersecurity
Boosted by @trending@homestead.social
Please boost for visibility! If you are running a #Mikrotik router or switch, upgrade it now. Right now. The fixed releases are 7.23.4 (long-term), 7.24.2 (stable) and 6.49.21. If you are running a version less than that, there are multiple entrypoints for a complete unauthenticated remote code authentication.
This is as bad as it gets, upgrade and reboot now. Yes, you'll have an outage for a few minutes, but it's better than the alternative.
#router #ipv4 #ipv6
Last night I didn't want to do my taxes... so I installed @prosodyim@fosstodon.org on my LAN switch, a #MikroTik RB4011
It was hypothetically easy (install&enable Containers, follow https://prosody.im/doc/docker to deploy on eMMC, forward the ports, add a certificate), so I played it on hard mode with a #punycode domain
Biggest challenge: MikroTik won't let you paste "☝" in a terminal
2nd challenge: finding a compatible client
Now say hi to xmpp:georg@☝.op-co.de (if your client permits)
#xmpp #docker #prosody
Anyone had a chance to play with that new Mikrotik Wifi 7 router thingy?
https://mikrotik.com/product/hap_be3_media
2.4ghz around here is unusable and 5 GHz is rapidly approaching the same
#Mikrotik
Replying to
@poes@sok.egois.org pakai #CHR (cloud hosted router) nya #mikrotik. Atau kalo kau lebih komplit bisa simulasi jaringannya, jalanin CHR nya di #GNS3
https://www.gns3.com/
Funny deadlock situation... I’ve reached peak security on my remote MikroTik Router (AS201379).
By "peak security," I mean I’ve successfully locked everyone out - including myself. SSH, WWW, and WinBox are dark. Even the Hypervisor management is trapped behind the router's new, very effective, accidental firewall rules.
The data plane is running perfectly, which is the ultimate taunt. See you tomorrow for the 80-mile "Serial Cable Walk of Shame" to the datacenter.
This is a brutal reminder that the "Safe Mode" button in WinBox isn't just a feature. It’s a lifeline.
#sysadmin #mikrotik #networking #fail #AS201379 #PacketPushers
📻 Mikrotik wchodzi w #Meshtastic / #Meshcore
Oto pokazany na targach #MikroTik Scout
Chip Nrf, ekran e-ink, wymienny aku 18650.
To zaczyna być "na serio", osoby niedowiarkowe 😉
LibreNMS and MikroTik are a great combination.
A client reached out because they had no clear idea how their queues were configured or whether they were actually needed. After all, "everything seems to be running fine.". The usual mantra: "if eveything's working, what am I paying you for?"
I pulled up LibreNMS, grabbed a couple of screenshots, and suddenly everything made sense.
The response? "WOW."
#LibreNMS #Monitoring #MikroTik
You've seen all posts


