Wire · regulatory
MikroTik routers targeted by active SSH zero-day exploitation
◆ Sectors
◆ Source
◆ Verified
Fusion42 · 9 September 2026 · Fusion42 review
MikroTik routers running RouterOS are being actively exploited through a zero-day SSH vulnerability chain known as MikroTrick, allowing attackers unauthenticated admin-level access. MikroTik has issued patches and urged immediate updates and log inspection to mitigate targeted attacks starting in early September 2026.
This Wire brief sits within Fusion42's coverage of Cybersecurity and Security Infrastructure, and 4 sources have reported it between 6 Sep 2026 and 9 Sep 2026.
◆ ◆ The Wire takeaway
You must prioritise patching MikroTik routers exposed to the internet this week to block active SSH exploitation that grants attackers full device control. Leaving SSH open without firewall restrictions now exposes your network perimeter to immediate takeover.
◆ Coverage
4 sources · first reported 6 Sep 2026 · latest 9 Sep 2026
◆ Related on Wire
◆ Topics