home.social

#zyxel — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #zyxel, aggregated by home.social.

fetched live
  1. I think I've found a way to mimic my #Synology guest WiFi network password rotation as I retire the units for newer #Zyxel APs. It involves ssh, a cron job, and very likely expect (!!!) of all things, to login to each AP, run a few commands, and set a random password. Emailing it to me or making a QR code somewhere is a later problem to solve. Won't use the cloud management platform, which might be easier. I just worry about wearing out the flash.

  2. I think I've found a way to mimic my #Synology guest WiFi network password rotation as I retire the units for newer #Zyxel APs. It involves ssh, a cron job, and very likely expect (!!!) of all things, to login to each AP, run a few commands, and set a random password. Emailing it to me or making a QR code somewhere is a later problem to solve. Won't use the cloud management platform, which might be easier. I just worry about wearing out the flash.

  3. I think I've found a way to mimic my #Synology guest WiFi network password rotation as I retire the units for newer #Zyxel APs. It involves ssh, a cron job, and very likely expect (!!!) of all things, to login to each AP, run a few commands, and set a random password. Emailing it to me or making a QR code somewhere is a later problem to solve. Won't use the cloud management platform, which might be easier. I just worry about wearing out the flash.

  4. I think I've found a way to mimic my #Synology guest WiFi network password rotation as I retire the units for newer #Zyxel APs. It involves ssh, a cron job, and very likely expect (!!!) of all things, to login to each AP, run a few commands, and set a random password. Emailing it to me or making a QR code somewhere is a later problem to solve. Won't use the cloud management platform, which might be easier. I just worry about wearing out the flash.

  5. I think I've found a way to mimic my #Synology guest WiFi network password rotation as I retire the units for newer #Zyxel APs. It involves ssh, a cron job, and very likely expect (!!!) of all things, to login to each AP, run a few commands, and set a random password. Emailing it to me or making a QR code somewhere is a later problem to solve. Won't use the cloud management platform, which might be easier. I just worry about wearing out the flash.

  6. Chinese hackers exploit flaws in WordPress, Zyxel to steal government data

    In a massive cyberattack, hackers exploited vulnerabilities in WordPress and Zyxel to steal sensitive government data from 996 devices across 48 countries. The breach exposed device configurations, network info, and critical credentials, with one Western government organization losing over 18,000 records, including accounts and…

    osintsights.com/chinese-hacker

    #ChineseHackers #NationState #SupplyChain #Zyxel #Wordpress

  7. Chinese hackers exploit flaws in WordPress, Zyxel to steal government data

    In a massive cyberattack, hackers exploited vulnerabilities in WordPress and Zyxel to steal sensitive government data from 996 devices across 48 countries. The breach exposed device configurations, network info, and critical credentials, with one Western government organization losing over 18,000 records, including accounts and…

    osintsights.com/chinese-hacker

    #ChineseHackers #NationState #SupplyChain #Zyxel #Wordpress

  8. 📢 Un acteur chinois vole 18 000 dossiers gouvernementaux via WordPress et exploite ZyXEL GS1900

    Ce rapport documente l'activité d'un acteur malveillant cybernétique (MCA) suivi depuis juin 2026 via le Global Observation Grid (GOG) de GreyNoise. L'acteur est suspecté d'être sinophone, opérant en UTC+8, et est relié au groupe "Red Heron" précédemment rapporté…

    📖 cyberveille : cyberveille.ch/posts/2026-09-2
    🌐 source : greynoise.io/blog/open-season-
    🟢 vérification factuelle haute
    #WordPress #ZyXEL #Cyberveille

  9. CISA added CVE-2026-7273, a stack-based buffer overflow in Zyxel GS1900 CGI handling, to KEV on Sept 21, 2026 after confirmed active exploitation. Unauthenticated LAN HTTP requests can yield OS command execution, risking switch takeover and lateral movement. #Zyxel #KnownExploitedVulnerabilities #NetworkSecurity

    cyberworldops.eu/en/actively-e

  10. CISA added CVE-2026-7273, a stack-based buffer overflow in Zyxel GS1900 CGI handling, to KEV on Sept 21, 2026 after confirmed active exploitation. Unauthenticated LAN HTTP requests can yield OS command execution, risking switch takeover and lateral movement. #Zyxel #KnownExploitedVulnerabilities #NetworkSecurity

    cyberworldops.eu/en/actively-e

  11. CISA added CVE-2026-7273, a stack-based buffer overflow in Zyxel GS1900 CGI handling, to KEV on Sept 21, 2026 after confirmed active exploitation. Unauthenticated LAN HTTP requests can yield OS command execution, risking switch takeover and lateral movement. #Zyxel #KnownExploitedVulnerabilities #NetworkSecurity

    cyberworldops.eu/en/actively-e

  12. Zyxel GS1900 switches (CVE-2026-7273) and Veeam Agent for Microsoft Windows (CVE-2026-32996) are under active exploitation. The former allows unauthenticated LAN command execution via CGI buffer overflow, the latter enables SYSTEM-level access on endpoints. Both expand persistence and backup tampering risk. #Zyxel #Veeam #ThreatIntel #VulnManagement

    cyberworldops.eu/en/active-att

  13. Zyxel GS1900 switches (CVE-2026-7273) and Veeam Agent for Microsoft Windows (CVE-2026-32996) are under active exploitation. The former allows unauthenticated LAN command execution via CGI buffer overflow, the latter enables SYSTEM-level access on endpoints. Both expand persistence and backup tampering risk. #Zyxel #Veeam #ThreatIntel #VulnManagement

    cyberworldops.eu/en/active-att

  14. CISA Flags Active Exploitation of Zyxel, Veeam Flaws

    The US Cybersecurity and Infrastructure Security Agency (CISA) has sounded the alarm on a high-severity Zyxel vulnerability, warning that hackers are actively exploiting it to gain control of unpatched GS1900 series switches. This critical flaw, now patched, has a CVSS score of 8.8 and could allow attackers to execute malicious OS commands via a simple…

    osintsights.com/cisa-flags-act

    #Zyxel #Veeam #Cve20267273 #Cisa #KnownExploitedVulnerabilities

  15. Сегодня звёзды сошлись и я... Настроил vlan'ы, транк, связал со старым длинком, подключился первого абонента - Orange Pi5.
    Работает!
    А после обновления прошивки заработал нормально ssh, да и красивостей прибавилось.
    #zyxel #xgs1930

  16. Сегодня звёзды сошлись и я... Настроил vlan'ы, транк, связал со старым длинком, подключился первого абонента - Orange Pi5.
    Работает!
    А после обновления прошивки заработал нормально ssh, да и красивостей прибавилось.
    #zyxel #xgs1930

  17. Сегодня звёзды сошлись и я... Настроил vlan'ы, транк, связал со старым длинком, подключился первого абонента - Orange Pi5.
    Работает!
    А после обновления прошивки заработал нормально ssh, да и красивостей прибавилось.
    #zyxel #xgs1930

  18. Zyxel: 70 CVEs, 100% unpatched. 3 CISA KEV exploited. Max CVSS 9.8. Trust Score: D. Networking gear = easy target. Patch NOW. #Zyxel #infosec #cybersecurity

    valtersit.com/vendors/zyxel/

  19. Zyxel: 70 CVEs, 100% unpatched. 3 CISA KEV exploited. Max CVSS 9.8. Trust Score: D. Networking gear = easy target. Patch NOW. #Zyxel #infosec #cybersecurity

    valtersit.com/vendors/zyxel/

  20. Zyxel: 70 CVEs, 100% unpatched. 3 CISA KEV exploited. Max CVSS 9.8. Trust Score: D. Networking gear = easy target. Patch NOW. #Zyxel #infosec #cybersecurity

    valtersit.com/vendors/zyxel/

  21. CVE-2026-13206: CRITICAL OS command injection in Zyxel WAH7601 (≤20072026). Remote, unauthenticated code execution possible — no patch yet. Restrict access & monitor vendor updates. Details: radar.offseq.com/threat/cve-20 #OffSeq #CVE #Zyxel #Vuln #InfoSec

  22. CVE-2026-13206: CRITICAL OS command injection in Zyxel WAH7601 (≤20072026). Remote, unauthenticated code execution possible — no patch yet. Restrict access & monitor vendor updates. Details: radar.offseq.com/threat/cve-20 #OffSeq #CVE #Zyxel #Vuln #InfoSec

  23. CVE-2026-13206: CRITICAL OS command injection in Zyxel WAH7601 (≤20072026). Remote, unauthenticated code execution possible — no patch yet. Restrict access & monitor vendor updates. Details: radar.offseq.com/threat/cve-20 #OffSeq #CVE #Zyxel #Vuln #InfoSec

  24. CVE-2026-13206: CRITICAL OS command injection in Zyxel WAH7601 (≤20072026). Remote, unauthenticated code execution possible — no patch yet. Restrict access & monitor vendor updates. Details: radar.offseq.com/threat/cve-20 #OffSeq #CVE #Zyxel #Vuln #InfoSec

  25. Status meiner Internetzugangsbeziehung: Es ist unkompliziert 😁.
    #Glasfaser bei der #Telekom bestellt. Techniker hat Kabel vom Keller in die Wohnung gezogen. Habe das "Telekom" #Glasfasermodem von #Zyxel in den #SFP Slot meines #tplink #vx800v gesteckt, das Modem über den Einrichtungslink der Telekom registriert und... es ging auf Anhieb!! 🕺😎

  26. Status meiner Internetzugangsbeziehung: Es ist unkompliziert 😁.
    #Glasfaser bei der #Telekom bestellt. Techniker hat Kabel vom Keller in die Wohnung gezogen. Habe das "Telekom" #Glasfasermodem von #Zyxel in den #SFP Slot meines #tplink #vx800v gesteckt, das Modem über den Einrichtungslink der Telekom registriert und... es ging auf Anhieb!! 🕺😎

  27. Status meiner Internetzugangsbeziehung: Es ist unkompliziert 😁.
    #Glasfaser bei der #Telekom bestellt. Techniker hat Kabel vom Keller in die Wohnung gezogen. Habe das "Telekom" #Glasfasermodem von #Zyxel in den #SFP Slot meines #tplink #vx800v gesteckt, das Modem über den Einrichtungslink der Telekom registriert und... es ging auf Anhieb!! 🕺😎

  28. Just found out, that acme.sh supports deploying certs to zyxel gs1900 switches AND opnsense supports it as automation 😎
    Proxmox, truenas are supported too, but I do have processes for these hosts already.
    #acmesh #opnsense #zyxel #gs1900 #httpseverwhere

  29. Just found out, that acme.sh supports deploying certs to zyxel gs1900 switches AND opnsense supports it as automation 😎
    Proxmox, truenas are supported too, but I do have processes for these hosts already.
    #acmesh #opnsense #zyxel #gs1900 #httpseverwhere

  30. CVE-2026-6837 - Post-auth command injection in Zyxel WAX650S export-cgi. Admin RCE. CVSS 7.2. Unpatched - restrict admin access now. #CVE #Zyxel #infosec

    valtersit.com/cve/CVE-2026-683

  31. CVE-2026-6837 - Post-auth command injection in Zyxel WAX650S export-cgi. Admin RCE. CVSS 7.2. Unpatched - restrict admin access now. #CVE #Zyxel #infosec

    valtersit.com/cve/CVE-2026-683