#RouterOS
Kein Passwort. Kein SSH-Schlüssel. Keine Authentifizierung überhaupt. 😉
MikroTrick Chain Let Attackers Take Over MikroTik Routers Without a Password or SSH Key
Attackers chained two RouterOS SSH flaws to gain full admin access on Internet-exposed MikroTik routers before patches shipped.
thehackernews.com
September 24, 2026 at 10:28 AM
At MikroTik every time a new employee gets hired, the team celebrates by adding another way to do VLANs in RouterOS.
March 14, 2026 at 3:12 AM
anyway yeah back online, my router exploded & my attempts to install three different router OSes (routerOS, pfsense, opnsense) all failed so here we are under iptables in MX Linux until the phone company sends a new one
January 27, 2026 at 1:14 AM
RouterOS 7.16.2
RouterOS 7.16.2
tweakers.net
November 27, 2024 at 4:25 PM
AI Helps Uncover MikroTrick Attack Chain in MikroTik RouterOS

MikroTrick chains two RouterOS flaws to bypass authentication and gain admin access. AI helped researchers uncover the attack chain within days. MikroTik pushed out patches on September 3, 2026 for several RouterOS iss…
#hackernews #news
AI Helps Uncover MikroTrick Attack Chain in MikroTik RouterOS
MikroTrick chains two RouterOS flaws to bypass authentication and gain admin access. AI helped researchers uncover the attack chain within days. MikroTik pushed out patches on September 3, 2026 for several RouterOS issues at once, calling it an important security update without saying what it actually fixed. That silence was deliberate, and it didn’t last […]
securityaffairs.com
September 25, 2026 at 6:19 PM
MikroTik RouterOS Vulnerability Chain Allows Unauthenticated Admin Access

Attackers are using a chain of two RouterOS vulnerabilities, known as MikroTrick, to bypass authentication and gain full control over MikroTik routers.
MikroTik RouterOS Vulnerability Chain Allows Unauthenticated Admin Access
Attackers are using a chain of two RouterOS vulnerabilities, known as MikroTrick, to bypass authentication and gain full control over MikroTik routers.
privacyneedle.com
September 23, 2026 at 4:42 PM
MikroTik: detalles técnicos de explotación activa de dos vulnerabilidades de SSH en MikroTik RouterOS

Vía: @seguinfo.bsky.social
MikroTrick: detalles técnicos de explotación activa de dos vulnerabilidades de SSH en MikroTik RouterOS
blog.segu-info.com.ar
September 25, 2026 at 1:23 AM
📢 MikroTrick : analyse technique de la chaîne CVE-2026-67279 + CVE-2026-86060 sur RouterOS

Cet article constitue une analyse technique approfondie de la chaîne de vulnérabilités MikroTrick, affectant MikroTik RouterOS. Les patches…

🟢 vérification factuelle haute
#RouterOS #MikroTik #Cyberveille
MikroTrick : analyse technique de la chaîne CVE-2026-67279 + CVE-2026-86060 sur RouterOS
Cet article constitue une analyse technique approfondie de la chaîne de vulnérabilités MikroTrick, affectant MikroTik RouterOS. Les patches ont été publiés le 3 septembre 2026 simultanément pour plusieurs branches maintenues : 7.25beta3, 7.24.2, 7.23.4 et 6.49.21. Le serveur SSH de RouterOS gérait incorrectement un rekey initié pendant la phase d'authentification.
cyberveille.ch
September 23, 2026 at 7:30 PM
No turkey and stuffing for me, but containers and VMs? Sure. Let's make #MikroTik #CHR images a bit friendlier for declarative #containerlab use. #RouterOS #NetEng #vrnetlab ghostinthenet.info/chr-in-conta...
MikroTik Cloud Hosted Router Images in containerlab
Pining for turkey and stuffing, I settled for containers and VMs instead. In the process, I've offered some advice on better use of RouterOS in containerlab.
ghostinthenet.info
November 28, 2025 at 3:57 AM
Per fi! RouterOS amb una interfície web moderna!
January 24, 2025 at 7:06 PM
CISA added MikroTik RouterOS flaw CVE-2026-67279 to its Known Exploited Vulnerabilities catalog.

• SSH bug lets unauthenticated clients send exec requests

https://thecircuitry.to/article/cisa-adds-mikrotik-routeros-ssh-flaw-cve-2026-67279-to-kev-catalog-muhdvct3
September 25, 2026 at 7:58 PM
Hoje meu desgraçamento mental ficou por conta do mau regex do TFTP do RouterOS
January 20, 2026 at 2:30 AM
A raiva que eu tô passando tentando configurar o firewall do RouterOS....
September 5, 2026 at 8:40 PM
🛑 CVE-2026-67279
MikroTik RouterOS
CVSS 6.9 / EPSS 1% / KEV: No
TL;DR: RouterOS SSH enters the connection protocol after a client-requested rekey even though us…
https://cvesentinel.com/report/CVE-2026-67279?utm_source=bluesky&utm_medium=social&utm_campaign=cvesentinel
#infosec #CVE #vulnerability
September 25, 2026 at 3:23 PM
MTCSE preparation: MikroTik Security for RouterOS v6 & v7 Essential Security for RouterOS v7: MTCSE Ready ⏱️ Length: 1.9 total hours ⭐ 4.58/5 rating 👥 4,869 students 🔄 Oc...

#StudyBullet-22 #coupons #development #Education #Free #Courses #online […]

[Original post on studybullet.com]
May 12, 2026 at 7:38 PM
Oh damn I had not seen the details of the MicroTik RCE: the client can send a public RSA key with correct N and e = 1 and the server will use it.

Two primitives/protocol things that would have prevented it: if RSA was defined with a fixed e, and if SSH clients sent a key hash instead.
CVE-2026-67276 - GitHub Advisory Database
RouterOS does not compare the complete RSA public key...
github.com
September 11, 2026 at 1:06 PM
Mi RB5009 tenía un bucle de capa 2. Lo delataba el log del kernel, no el de RouterOS ni su monitor de puertos.

Lo vi con mikroscope, que he hecho: un agente Go en un contenedor de RouterOS, de 1 a 100 Hz, y una CLI que reenvía a 11 destinos. MIT.

github.com/jmrplens/mik...

#Mikrotik #OpenSource
September 25, 2026 at 3:38 PM
How to Configure #RouterOS on a #MikroTik CHR #VPS Server This article provides a guide for how to configure RouterOS on a MikroTik CHR VPS server. MikroTik is an internationally acclaimed manufacturer of hardware such as modems, routers ...
Continued 👉 #vpsguide #kvmvps #installguide #mikrotikchr
How to Configure RouterOS on a MikroTik CHR VPS Server
blog.radwebhosting.com
September 23, 2026 at 12:30 AM
CERT Polska warnt vor aktiv ausgenutzten Lücken in MikroTik RouterOS. Über SSH lassen sich Router ohne Zugangsdaten komplett übernehmen. Update dringend nötig. #Security
MikroTrick: RouterOS-Lücken werden aktiv ausgenutzt – jetzt patchen
CERT Polska warnt vor aktiv ausgenutzten Lücken in MikroTik RouterOS. Über SSH lassen sich Router ohne Zugangsdaten komplett übernehmen. Update dringend nötig.
www.heise.de
September 7, 2026 at 12:15 PM
MikroTrick chains two RouterOS flaws to bypass authentication and gain admin access. AI helped researchers uncover the attack chain within days. MikroTik pushed out patches on September 3, 2026 for several RouterOS issues at once, calling it an important security update without saying what it […]
Original post on poliverso.org
poliverso.org
September 24, 2026 at 6:24 PM
NAT64 on Mikrotik RouterOS !
October 25, 2023 at 4:03 AM