# MikroTik patches RouterOS flaws linked to device takeovers

_Tuesday, September 8, 2026 at 7:15 AM EDT · Security · Latest · Tier 1 — Major_

![MikroTik patches RouterOS flaws linked to device takeovers — Primary](https://www.securityweek.com/wp-content/uploads/2023/01/Cybersecurity_News-SecurityWeek.jpg)

MikroTik has released RouterOS updates for six vulnerabilities after CERT Poland said attackers were chaining two of them to take full control of devices with SSH exposed to public networks. The two flaws, called MikroTrick, include an authentication bypass and a session privilege-manipulation issue, each rated 9.2 CVSS. CERT Poland said exploitation has occurred since at least September 2. Shadowserver found more than 120,000 MikroTik devices with internet-accessible SSH during a September 5 scan window.

## Sources

- [SecurityWeek](https://www.securityweek.com/mikrotik-patches-critical-flaws-chained-to-hack-routers/)

---
Canonical: https://techandbusiness.org/newswire/SdFafe4Zxo6o_RBMFBMnMb
Retrieved: 2026-09-08T22:59:28.505Z
Publisher: Tech & Business (techandbusiness.org)
