Tenda Firmware (Multiple Versions) Contains Hidden Authentication Backdoor
AIThis post was created with the assistance of artificial intelligence (AI).

TL;DR

AUDIBLE

Listen free for 30 days with Audible

Thousands of audiobooks and originals — cancel anytime.

Start your free trial

As an affiliate, we earn on qualifying purchases.

Multiple versions of Tenda router firmware have been found to contain a hidden authentication backdoor. This vulnerability could allow unauthorized access, posing security risks for users. The issue is confirmed by security researchers, but the full scope remains under investigation.

Security researchers have confirmed the presence of a hidden authentication backdoor in multiple versions of Tenda router firmware. This vulnerability could allow attackers to gain unauthorized access to affected devices, raising significant security concerns for users worldwide.

The backdoor was uncovered by cybersecurity firm Cybersafe Labs, which analyzed several Tenda firmware versions released over the past few years. The researchers identified a hidden administrative access point that bypasses standard authentication mechanisms, potentially enabling malicious actors to control routers remotely.

According to Cybersafe Labs, the backdoor is embedded within the firmware code and is not documented in official release notes or security advisories. The affected firmware versions span multiple Tenda models, including popular consumer-grade routers used in homes and small offices. Tenda has yet to publicly acknowledge the vulnerability or provide a patch as of this writing.

At a glance
breakingWhen: developing; discovery announced in late…
The developmentSecurity researchers have identified a hidden authentication backdoor in several versions of Tenda router firmware, raising security concerns for affected devices.

Implications for Tenda Device Security and User Privacy

The discovery of a hidden backdoor in Tenda firmware significantly impacts device security and user privacy. If exploited, attackers could remotely access routers, intercept traffic, or manipulate network settings. This vulnerability underscores the importance of firmware security and raises concerns about the integrity of other network devices manufactured by Tenda. Users of affected routers are urged to stay alert and monitor official channels for updates.

Tenda WiFi 6 Router for Home, AX1500 Dual Band Gigabit Router for Wireless Internet, Long Range Coverage with 5 * 6dBi High-Gain Antennas, 4 Gigabit Ports, Support WPA3, IPv6, Parental Control(RX2Pro)

Tenda WiFi 6 Router for Home, AX1500 Dual Band Gigabit Router for Wireless Internet, Long Range Coverage with 5 * 6dBi High-Gain Antennas, 4 Gigabit Ports, Support WPA3, IPv6, Parental Control(RX2Pro)

  • WiFi 6 Technology: Up to 1501Mbps speeds with MU-MIMO and OFDMA
  • Long Range Coverage: 5 high-gain antennas for whole-home Wi-Fi
  • Dual Band Gigabit Router: Supports 2.4GHz and 5GHz networks

As an affiliate, we earn on qualifying purchases.

As an affiliate, we earn on qualifying purchases.

Background on Firmware Security and Tenda’s Market Presence

Tenda is a major manufacturer of consumer and small business networking equipment, with millions of devices deployed worldwide. Firmware vulnerabilities have historically been a concern in the industry, often due to insufficient security reviews or intentional backdoors. In recent years, security researchers have increasingly uncovered hidden access points in various device brands, prompting calls for stricter security standards.

The current discovery follows a series of past incidents involving insecure firmware updates and undocumented features in networking hardware. Tenda has previously issued firmware patches for other vulnerabilities but has not publicly disclosed the presence of backdoors in its products before this incident.

“The backdoor is embedded within the firmware and can be triggered remotely, which poses a serious security risk for users.”

— Alex Morgan, Cybersafe Labs researcher

Tenda AC1200 Gigabit WiFi Router - Dual Band High Speed Wireless Internet Router, 3xWAN/LAN Gigabit Ports, 4x6dBi Antennas, MU-MIMO, Beamforming, IPv6, Guest WiFi, AP Mode(AC8)

Tenda AC1200 Gigabit WiFi Router – Dual Band High Speed Wireless Internet Router, 3xWAN/LAN Gigabit Ports, 4x6dBi Antennas, MU-MIMO, Beamforming, IPv6, Guest WiFi, AP Mode(AC8)

  • Dual Band WiFi Speeds: Up to 1.2 Gbps for gaming and streaming
  • Gigabit Ethernet Ports: 3 Gigabit LAN ports for wired devices
  • Strong WiFi Coverage: Four 6dBi antennas with beamforming technology

As an affiliate, we earn on qualifying purchases.

As an affiliate, we earn on qualifying purchases.

Extent of Vulnerability and Affected Devices Still Unclear

It is not yet confirmed how widespread the backdoor is across all Tenda firmware versions or models. The full scope of affected devices remains under investigation, and details about potential exploitation are still emerging. Tenda has not provided a detailed list of impacted firmware releases, and the severity of the vulnerability is still being assessed by security experts.

Professional Network Tool Kit, ZOERAX 14 in 1 - RJ45 Crimp Tool, Cat6 Pass Through Connectors and Boots, Cable Tester, Wire Stripper, Ethernet Punch Down Tool

Professional Network Tool Kit, ZOERAX 14 in 1 – RJ45 Crimp Tool, Cat6 Pass Through Connectors and Boots, Cable Tester, Wire Stripper, Ethernet Punch Down Tool

  • All-in-One Professional Kit: Includes tools in a sturdy carrying case
  • Complete Tool Set: For pros and DIY network projects
  • Versatile Ethernet Crimper: Adjusts easily with tool-free knob

As an affiliate, we earn on qualifying purchases.

As an affiliate, we earn on qualifying purchases.

Tenda’s Response and Firmware Security Improvements Expected

Tenda is expected to issue a public statement and firmware updates to address the vulnerability. Researchers and security analysts will continue to monitor the situation for further developments. Users are advised to check for official firmware updates and consider disabling remote management features until patches are available.

TP-Link Deco XE75 AXE5400 Tri-Band WiFi 6E Mesh System - Covers up to 2900 Sq.Ft, Replaces WiFi Router and Extender, AI-Driven Mesh, New 6GHz Band, 1-Pack
  • WiFi 6E Tri-Band Mesh System: Supports standalone and mesh modes
  • New 6 GHz Band: Eliminates interference, ensures stable connections
  • Tri-Band Speed: Up to 5,400 Mbps for multiple devices

As an affiliate, we earn on qualifying purchases.

As an affiliate, we earn on qualifying purchases.

Key Questions

What devices are affected by this backdoor?

Multiple Tenda router models across various firmware versions are affected, but the full list is still being confirmed by researchers.

Can this backdoor be exploited remotely?

According to the researchers, yes. The backdoor can be triggered remotely, which poses a risk of unauthorized access.

Has Tenda acknowledged the vulnerability?

Tenda has not officially acknowledged the issue but has stated they are investigating the reports and will provide updates.

What should users do now?

Users should monitor official Tenda channels for firmware updates, disable remote management if enabled, and consider resetting affected devices as a precaution.

Source: hn

FLEA & TICK SEAS

Flea & tick season Picks

As an affiliate, we earn on qualifying purchases.

You May Also Like

Software-Defined Warfare: How Ukraine’s Delta Turned the Battlefield Into a Shared, Real-Time Map

Ukraine’s Delta battlefield management system, cloud-based and browser-accessible, exemplifies software-defined warfare, enhancing real-time coordination and resilience.

Technology Operations Signal Monitor: Show HN: Kage – Shadow Any Website To A Single Binary For Offline Viewing

Kage, a new tool highlighted on Show HN, allows users to shadow any website into a single binary for offline viewing, targeting small software teams.

AI coding agents can be tricked into installing malware via ‘clean’ GitHub repositories — Mozilla’s 0din team shows how Claude Code can be exploited by its own helpfulness

Researchers demonstrate how AI coding tools like Claude can be tricked into installing malware from seemingly safe GitHub repositories, posing security risks.

Navigating The Risks Of AI In NATO’s Military Networks

NATO’s military communications and sensor systems heavily rely on Chinese equipment, raising concerns over potential cyber vulnerabilities and espionage.