Zyxel issued hotfixes for a severe command injection vulnerability traced as CVE-2024-6342, affecting its NAS326 and NAS542 network-attached storage (NAS) devices.
The flaw reported by security researchers Nanyu Zhong and Jinwei Dong from VARAS@IIE, poses significant risks for it allows bad actor to execute arbitrary operating system commands.
By infosecbulletin
/ Wednesday , July 30 2025
OWASP has released new guidelines for securing AI applications that use large language models. The guidance, released on July 28,...
Read More
By infosecbulletin
/ Wednesday , July 30 2025
VPN services are rapidly climbing the app charts in the UK following a new law that requires age verification for...
Read More
By infosecbulletin
/ Wednesday , July 30 2025
Bangladesh Bank has alerted all scheduled banks to enhance their cybersecurity measures to protect sensitive financial data and ICT systems...
Read More
By infosecbulletin
/ Wednesday , July 30 2025
Orange, a major French telecom company, announced on Monday that it was attacked by hackers. In the announcement, the company...
Read More
By infosecbulletin
/ Wednesday , July 30 2025
SonicWall's SMA100 series SSL-VPN appliances have serious security vulnerabilities, revealing ongoing issues in network infrastructure. The identified vulnerabilities show fundamental...
Read More
By infosecbulletin
/ Tuesday , July 29 2025
Russia's two largest pharmacy chains halted operations in several regions on Tuesday due to cyberattacks that affected their digital systems...
Read More
By infosecbulletin
/ Tuesday , July 29 2025
Cybersecurity researchers from CloudSEK’s STRIKE team used facial recognition and GPS to uncover a large fake currency scheme worth over...
Read More
By infosecbulletin
/ Sunday , July 27 2025
A new real-time alert app for preventing cyber fraud is expected to launch next year, as reported by researchers at...
Read More
By infosecbulletin
/ Saturday , July 26 2025
Some customers of Broadcom’s VMware business currently cannot access security patches, putting them at greater risk of attack. Customers in...
Read More
By infosecbulletin
/ Saturday , July 26 2025
Hidden Investigations is a cybersecurity-driven team committed to advancing digital security through research, innovation, and hands-on impact, bridging the gap...
Read More
Its concerning because of its widespread use of Zyxel NAS devices in small to medium-sized businesses (SMBs) for data storage and backup functions.
Zyxel has released hotfixes for its NAS even though they are no longer in the support phase, highlighting the seriousness of security vulnerability. This action shows Zyxel’s commitment to customer safety and the importance of continued security awareness for all devices regardless of their support status.
Zyxel recommends that users apply available hotfixes right away, despite no current active exploitation of the vulnerability. Recent incidents, like CVE:2024-29973 show that NAS devices are appealing targets for cybercriminals, highlighting the importance of quick action to prevent breeches.
Zyxel’s response highlights the importance of security updates for users of older technology. To protect sensitive data, it is essential to promptly apply security patches. Users of Zyxel NAA326 and NAS542 devices should quickly implement the hotfixes to defend against potential attacks.