Chinese-Made Zbtlink Routers Ship With Backdoor That Opens Unauthenticated Root Shells
Summary
Cybersecurity researchers have discovered a backdoor in at least 20 Zbtlink router models manufactured in China. This backdoor, present in firmware for over two years, allows for unauthenticated root shell access.
IFF Assessment
FOE
The discovery of a pre-installed backdoor in widely distributed hardware poses a significant threat to users and organizations, making it bad news for defenders.
Defender Context
This finding highlights the critical importance of supply chain security, especially for network infrastructure devices. Defenders should implement rigorous device vetting and monitoring for unexpected network beacons or unauthorized access attempts from devices manufactured by potentially untrusted sources.