Tech News
UK telcos including BT at risk from DrayTek router vulnerabilities

Several major communications services providers in the UK were found to be at risk from a series of vulnerabilities in Draytek’s Vigor router devices. This information was disclosed by ForeScout on October 2nd, impacting companies such as Daisy Communications, Gamma Telecom, Zen Internet, and even BT.
DrayTek released patches for all 14 vulnerabilities before the disclosure. However, ForeScout reported that over 704,000 routers were still exposed online at the time of disclosure. Given the recent takedown of a botnet involving DrayTek assets by the FBI, there is a significant risk of downstream compromises.
Forescout’s researchers highlighted that 75% of the vulnerable devices were being used in commercial settings. They emphasized the severe implications for business continuity and reputation, with potential downtime, loss of trust, and regulatory penalties.
The vulnerabilities varied in severity and impact, ranging from full system compromise to denial of service attacks and remote code execution. The most critical vulnerability, CVE-2024-41592, could lead to DoS and RCE, allowing threat actors to gain remote root access and perform malicious activities.
Further analysis by Censys revealed that the exposed DrayTek Vigor devices were predominantly located in the UK, Vietnam, the Netherlands, and Taiwan. In the UK, Gamma Telecom, BT, Daisy Communications, and Zen Internet had the highest numbers of vulnerable hosts.
Operators of the affected Vigor routers have been advised to patch their firmware immediately and restrict administrative web UIs from public access. BT confirmed they are working on remediations, while other affected organizations named by Censys did not respond to requests for comment.
FBI operation
In September 2024, the FBI conducted an operation against threat actors exploiting DrayTek’s devices, including products from other suppliers. This operation targeted a China-based company linked to state-backed threat actor Flax Typhoon, known for its intelligence-gathering activities.
The Flax Typhoon APT group, active since 2021, primarily targets networks in Taiwan but has also been observed in other regions. It focuses on government bodies, educational institutions, and various organizations worldwide.
-
Destination8 months ago
Singapore Airlines CEO set to join board of Air India, BA News, BA
-
Breaking News10 months ago
Croatia to reintroduce compulsory military draft as regional tensions soar
-
Gadgets3 months ago
Supernatural Season 16 Revival News, Cast, Plot and Release Date
-
Tech News12 months ago
Bangladeshi police agents accused of selling citizens’ personal information on Telegram
-
Productivity11 months ago
How Your Contact Center Can Become A Customer Engagement Center
-
Gadgets3 weeks ago
Fallout Season 2 Potential Release Date, Cast, Plot and News
-
Breaking News10 months ago
Bangladesh crisis: Refaat Ahmed sworn in as Bangladesh’s new chief justice
-
Toys12 months ago
15 of the Best Trike & Tricycles Mums Recommend