negativeSYS.SOURCE: The Hacker News• 2026-08-06T13:35:22+05:30
Chinese-Made Zbtlink Routers Contain Factory-Embedded Backdoor for Unauthenticated Root Access
Chinese-Made Zbtlink routers contain a factory-embedded backdoor (ENDLESSDOORS) that enables unauthenticated root shell access via a hardcoded Linux kernel thread masquerading as legitimate process. The vulnerability allows remote attackers to hijack router communications and gain full control without requiring internet accessibility.
Cybersecurity researchers have disclosed details of a "factory-shipped backdoor" implanted in at least 20 Chinese router models from Zbtlink.
According to a new report from VulnCheck, the implant appears in all 21 firmware images currently available from Zbtlink that span more than 2 years. The backdoors are designed such that they start automatically and attempt to beacon to Chinese
*** END OF TRANSMISSION ***