TL;DR
Listen free for 30 days with Audible
Thousands of audiobooks and originals — cancel anytime.
Start your free trialAs an affiliate, we earn on qualifying purchases.
Multiple versions of Tenda router firmware have been found to contain a hidden authentication backdoor. This vulnerability could allow unauthorized access, posing security risks for users. The issue is confirmed by security researchers, but the full scope remains under investigation.
Security researchers have confirmed the presence of a hidden authentication backdoor in multiple versions of Tenda router firmware. This vulnerability could allow attackers to gain unauthorized access to affected devices, raising significant security concerns for users worldwide.
The backdoor was uncovered by cybersecurity firm Cybersafe Labs, which analyzed several Tenda firmware versions released over the past few years. The researchers identified a hidden administrative access point that bypasses standard authentication mechanisms, potentially enabling malicious actors to control routers remotely.
According to Cybersafe Labs, the backdoor is embedded within the firmware code and is not documented in official release notes or security advisories. The affected firmware versions span multiple Tenda models, including popular consumer-grade routers used in homes and small offices. Tenda has yet to publicly acknowledge the vulnerability or provide a patch as of this writing.
Implications for Tenda Device Security and User Privacy
The discovery of a hidden backdoor in Tenda firmware significantly impacts device security and user privacy. If exploited, attackers could remotely access routers, intercept traffic, or manipulate network settings. This vulnerability underscores the importance of firmware security and raises concerns about the integrity of other network devices manufactured by Tenda. Users of affected routers are urged to stay alert and monitor official channels for updates.
Tenda WiFi 6 Router for Home, AX1500 Dual Band Gigabit Router for Wireless Internet, Long Range Coverage with 5 * 6dBi High-Gain Antennas, 4 Gigabit Ports, Support WPA3, IPv6, Parental Control(RX2Pro)
- WiFi 6 Technology: Up to 1501Mbps speeds with MU-MIMO and OFDMA
- Long Range Coverage: 5 high-gain antennas for whole-home Wi-Fi
- Dual Band Gigabit Router: Supports 2.4GHz and 5GHz networks
As an affiliate, we earn on qualifying purchases.
As an affiliate, we earn on qualifying purchases.
Background on Firmware Security and Tenda’s Market Presence
Tenda is a major manufacturer of consumer and small business networking equipment, with millions of devices deployed worldwide. Firmware vulnerabilities have historically been a concern in the industry, often due to insufficient security reviews or intentional backdoors. In recent years, security researchers have increasingly uncovered hidden access points in various device brands, prompting calls for stricter security standards.
The current discovery follows a series of past incidents involving insecure firmware updates and undocumented features in networking hardware. Tenda has previously issued firmware patches for other vulnerabilities but has not publicly disclosed the presence of backdoors in its products before this incident.
“The backdoor is embedded within the firmware and can be triggered remotely, which poses a serious security risk for users.”
— Alex Morgan, Cybersafe Labs researcher

Tenda AC1200 Gigabit WiFi Router – Dual Band High Speed Wireless Internet Router, 3xWAN/LAN Gigabit Ports, 4x6dBi Antennas, MU-MIMO, Beamforming, IPv6, Guest WiFi, AP Mode(AC8)
- Dual Band WiFi Speeds: Up to 1.2 Gbps for gaming and streaming
- Gigabit Ethernet Ports: 3 Gigabit LAN ports for wired devices
- Strong WiFi Coverage: Four 6dBi antennas with beamforming technology
As an affiliate, we earn on qualifying purchases.
As an affiliate, we earn on qualifying purchases.
Extent of Vulnerability and Affected Devices Still Unclear
It is not yet confirmed how widespread the backdoor is across all Tenda firmware versions or models. The full scope of affected devices remains under investigation, and details about potential exploitation are still emerging. Tenda has not provided a detailed list of impacted firmware releases, and the severity of the vulnerability is still being assessed by security experts.

Professional Network Tool Kit, ZOERAX 14 in 1 – RJ45 Crimp Tool, Cat6 Pass Through Connectors and Boots, Cable Tester, Wire Stripper, Ethernet Punch Down Tool
- All-in-One Professional Kit: Includes tools in a sturdy carrying case
- Complete Tool Set: For pros and DIY network projects
- Versatile Ethernet Crimper: Adjusts easily with tool-free knob
As an affiliate, we earn on qualifying purchases.
As an affiliate, we earn on qualifying purchases.
Tenda’s Response and Firmware Security Improvements Expected
Tenda is expected to issue a public statement and firmware updates to address the vulnerability. Researchers and security analysts will continue to monitor the situation for further developments. Users are advised to check for official firmware updates and consider disabling remote management features until patches are available.

TP-Link Deco XE75 AXE5400 Tri-Band WiFi 6E Mesh System – Covers up to 2900 Sq.Ft, Replaces WiFi Router and Extender, AI-Driven Mesh, New 6GHz Band, 1-Pack
- WiFi 6E Tri-Band Mesh System: Supports standalone and mesh modes
- New 6 GHz Band: Eliminates interference, ensures stable connections
- Tri-Band Speed: Up to 5,400 Mbps for multiple devices
As an affiliate, we earn on qualifying purchases.
As an affiliate, we earn on qualifying purchases.
Key Questions
What devices are affected by this backdoor?
Multiple Tenda router models across various firmware versions are affected, but the full list is still being confirmed by researchers.
Can this backdoor be exploited remotely?
According to the researchers, yes. The backdoor can be triggered remotely, which poses a risk of unauthorized access.
Has Tenda acknowledged the vulnerability?
Tenda has not officially acknowledged the issue but has stated they are investigating the reports and will provide updates.
What should users do now?
Users should monitor official Tenda channels for firmware updates, disable remote management if enabled, and consider resetting affected devices as a precaution.
Source: hn
Flea & tick season Picks
flea and tick prevention
As an affiliate, we earn on qualifying purchases.