{"slug": "pre-auth-rce-on-mikrotik-exploited-before-the-patch-rebuilt-in-three-hours", "title": "Pre-auth RCE on MikroTik: exploited before the patch, rebuilt in three hours", "summary": "CERT Polska disclosed six MikroTik RouterOS vulnerabilities on September 5, two of which chain into \"MikroTrick,\" a full unauthenticated takeover of any router with SSH reachable, with exploitation observed since at least September 2 — one day before MikroTik shipped fixes and three days before the advisory. The researchers reproduced the entire chain end to end from only the public advisory and the patch diff in roughly three hours and about 110,000 tokens, verified against both vulnerable releases, while four frontier models given the same inputs failed. CERT Polska said it cannot rule out additional undisclosed bugs, and the report notes these devices now wire up local AI clusters such as the DGX Spark, so one compromise exposes model weights, datasets, and all east-west traffic.", "body_md": "## In short\n\n- MikroTrick chains two RouterOS bugs into a full, unauthenticated takeover of\nany MikroTik device with SSH reachable. Exploitation ran from September 2,\n**one day before the patches and three days before the advisory** .\n- We reproduced the entire chain end to end from only the public advisory and\nthe patch diff, in a single uninterrupted run: **approximately three hours and\nroughly 110,000 tokens** (the token count covers the main session; the\nsubagent that reverse-engineered the patched binaries in the background ran\non top of that), verified\nagainst both vulnerable releases. Four frontier models given the same inputs\nfailed.\n- **These devices no longer sit only at the edge.** They wire up local AI\nclusters (the DGX Spark, TP>2 crowd), so one compromise exposes model\nweights, datasets, and all east-west traffic.\n- **Defense still investigates at ticket speed while offense iterates at agent\nspeed** , and CERT Polska cannot rule out additional undisclosed bugs. The\ndetection section and IoC table below are the checks to run now.\n\nOn September 5, [CERT Polska\ndisclosed](https://cert.pl/en/posts/2026/09/vulnerabilities-in-mikrotik-routeros-actively-exploited/)\nsix vulnerabilities in MikroTik RouterOS.\nTwo of them chain into **MikroTrick**: a full, unauthenticated takeover of any\nrouter with SSH reachable. Attackers had been using it since at least\nSeptember 2, a day before MikroTik shipped fixes and pushed a\nnotification to every phone running its app, begging people to update.", "url": "https://wpnews.pro/news/pre-auth-rce-on-mikrotik-exploited-before-the-patch-rebuilt-in-three-hours", "canonical_source": "https://tolmo.com/blog/mikrotrick-agentic-detection/", "published_at": "2026-09-06 08:00:00+00:00", "updated_at": "2026-09-29 01:48:57.516680+00:00", "lang": "en", "topics": ["ai-infrastructure", "ai-safety"], "entities": ["MikroTik", "RouterOS", "CERT Polska", "MikroTrick", "DGX Spark"], "also_reported_by": [], "alternates": {"html": "https://wpnews.pro/news/pre-auth-rce-on-mikrotik-exploited-before-the-patch-rebuilt-in-three-hours", "markdown": "https://wpnews.pro/news/pre-auth-rce-on-mikrotik-exploited-before-the-patch-rebuilt-in-three-hours.md", "text": "https://wpnews.pro/news/pre-auth-rce-on-mikrotik-exploited-before-the-patch-rebuilt-in-three-hours.txt", "jsonld": "https://wpnews.pro/news/pre-auth-rce-on-mikrotik-exploited-before-the-patch-rebuilt-in-three-hours.jsonld"}}