Vulnerabilities
MikroTik RouterOS SSH Bypass Exploited in the Wild; SANS Says Assume Compromise
CERT Polska found attackers chaining two MikroTik RouterOS flaws to take full administrative control of routers with SSH exposed to the internet, no password required. MikroTik shipped fixes, but SANS warns a patched device may already be owned: assume compromise and hunt.