Exposed Router Management: 8.09 Million RouterOS Assets and the 9,560 That Still Answer on SSH
ZoomEye indexed 8,085,997 devices running RouterOS, of which 9,560 respond on SSH — a condition for exploiting two MikroTik vulnerabilities added by CISA to the KEV catalog on September 10, 2026.
- 8.09 million RouterOS devices visible online per ZoomEye
- 9,560 of them expose SSH — about 1 in 800
- CVE-2026-67277 and CVE-2026-86060 allow full control without authentication
- CISA added both vulnerabilities to KEV on September 10, 2026
Read next
Security