← Back to feed
Vulnerabilities & PatchesEmerging1 sourceSep 18, 2026 · 09:59via Cyber Security News

MikroTrick Attack Lets Hackers Gain Full Admin Control of MikroTik Routers Without Login

Brief

MikroTik router owners face a security problem after researchers reproduced a takeover chain that can hand an outsider full administrator control without a password.

The attack, MikroTrick, targets exposed RouterOS devices through SSH and can turn a network gateway into an attacker-controlled foothold. The risk is serious because a router handles traffic entering and leaving a home or business.

An intruder with administrative rights could change settings, create hidden accounts, intercept data, or use the device to reach systems behind it. Evidence indicates exploitation began before the flaws became public.

Bishop Fox identified the chain while examining the flaws and later found configuration artifacts consistent with real-world compromise on internet-facing devices.

Read more on Cyber Security News→