chiprook
← Security
SecuritySeptember 22, 2026, 17:42

Attacker compromised nearly 1,000 Zyxel switches via CVE-2026-7273

GreyNoise reported that a Chinese-speaking threat actor exploited CVE-2026-7273 in unpatched Zyxel GS1900 switches and exfiltrated data from 996 devices across 48 countries. The stack-based buffer overflow was fixed in June 2026, with attacks occurring around August 17; CISA added the flaw to its Known Exploited Vulnerabilities catalog with a September 24, 2026 deadline.

Attacker compromised nearly 1,000 Zyxel switches via CVE-2026-7273
#Zyxel#CISA#GreyNoise
Read next
Security

CoreWeave launches Remote Key Encryption to keep customer keys off its cloud

Security

NHS Trust IT blunder overwrites 11 years of maternity records

Security

Akamai: verified AI crawlers shift to POST requests on retail sites

Security

Akamai: bot traffic up 300%, daily API attacks up 113%