A new campaign exploiting CVE-2025-29635, a high-severity command-injection RCE vulnerability in D-Link DIR-823X routers, is actively enlisting devices into a botnet. First detected by the security team at the company in March 2026, attackers send POST requests to a vulnerable endpoint to download and execute a shell script

3m read timeFrom bleepingcomputer.com
Post cover image
Table of contents
Related Articles:

Sort: