New Malware Attack Targets D-Link Routers: Users at Risk
A recent malware campaign leveraging the Mirai botnet has been detected, targeting D-Link DIR-823X routers. This attack exploits a severe vulnerability, CVE-2025-29635, allowing hackers to execute remote commands on affected devices.
The campaign, identified by Akamai’s SIRT in March 2026, marks the first instance of active exploitation since the vulnerability was disclosed over a year ago. Devices running outdated firmware are particularly at risk, as D-Link has ceased updates for these models.
The impact of this attack is significant, as compromised routers can be used for distributed denial-of-service (DDoS) attacks, posing a threat not only to affected users but also to the broader internet.
To protect against this threat, users are advised to upgrade to supported router models, disable unnecessary remote access, change default passwords, and monitor device settings for unusual changes.
Risk Level: High
Source: View Original Report
