D-Link DIR-878 end-of-life replacement advisory
Advisory/Mitigation
Summary
Hide ▲
Show ▼
D-Link told users of the DIR-878 router to move off the device because it reached end-of-life in 2021 and will receive no further security updates. The mitigation is to replace the unsupported router with an actively supported product, reducing exposure from the device's unresolved flaws.
Related Happenings
NSA/FBI/CISA router hardening advisory
Advisory/Mitigation
H score33
First: 13.07.2026 12:32
Last: 13.07.2026 12:32
Sources 1
About this happening:
NSA, FBI, CISA and 15 allied agencies issued a joint router hardening advisory after hackers targeted vulnerable and poorly configured routers in critical infrastruc...
NSA/FBI/CISA router hardening advisory
Advisory/MitigationAbout this happening: NSA, FBI, CISA and 15 allied agencies issued a joint router hardening advisory after hackers targeted vulnerable and poorly configured routers in critical infrastruc...
AryStinger legacy-router and QNAP NAS reconnaissance campaign
Campaign
H score72
First: 22.06.2026 09:57
Last: 22.06.2026 09:57
Sources 1
About this happening:
The AryStinger campaign is turning legacy routers and QNAP NAS boxes into a distributed reconnaissance and proxy network, creating a stealth relay layer for intrus...
AryStinger legacy-router and QNAP NAS reconnaissance campaign
CampaignAbout this happening: The AryStinger campaign is turning legacy routers and QNAP NAS boxes into a distributed reconnaissance and proxy network, creating a stealth relay layer for intrus...
D-Link DIR-823X command-injection RCE (CVE-2025-29635)
Vulnerability
H score40
First: 22.04.2026 23:04
Last: 22.04.2026 23:04
Sources 1
About this happening:
CVE-2025-29635 is now being actively exploited on D-Link DIR-823X routers, turning a command-injection flaw into remote command execution and botnet enrollment...
D-Link DIR-823X command-injection RCE (CVE-2025-29635)
VulnerabilityAbout this happening: CVE-2025-29635 is now being actively exploited on D-Link DIR-823X routers, turning a command-injection flaw into remote command execution and botnet enrollment...
Mirai-based CVE-2025-29635 D-Link DIR-823X botnet-enlistment campaign
Campaign
H score38
First: 22.04.2026 23:04
Last: 22.04.2026 23:04
Sources 1
About this happening:
The Mirai-based malware campaign is actively exploiting CVE-2025-29635 against D-Link DIR-823X routers, turning vulnerable devices into botnet nodes. The activity matt...
Mirai-based CVE-2025-29635 D-Link DIR-823X botnet-enlistment campaign
CampaignAbout this happening: The Mirai-based malware campaign is actively exploiting CVE-2025-29635 against D-Link DIR-823X routers, turning vulnerable devices into botnet nodes. The activity matt...
Cisco Catalyst SD-WAN Manager information disclosure vulnerability (CVE-2026-20133)
Vulnerability
H score7
First: 21.04.2026 15:30
Last: 21.04.2026 15:30
Sources 1
About this happening:
CISA moved CVE-2026-20133 in Cisco Catalyst SD-WAN Manager into its KEV Catalog, signaling active exploitation against unpatched devices and forcing FCEB age...
Cisco Catalyst SD-WAN Manager information disclosure vulnerability (CVE-2026-20133)
VulnerabilityAbout this happening: CISA moved CVE-2026-20133 in Cisco Catalyst SD-WAN Manager into its KEV Catalog, signaling active exploitation against unpatched devices and forcing FCEB age...
Timeline
-
20.11.2025 17:38 2 articles · 7mo ago
D-Link warns on DIR-878 vulnerabilities and replacement guidance
Mitigation Patch UpdateD-Link warned that DIR-878 routers are affected by four vulnerabilities, including three remotely exploitable command execution flaws and one USB or physical-access stack overflow, and said the end-of-life model will not receive security updates; the vendor recommends replacing the router with an actively supported product.
Show sources
- D-Link warns of new RCE flaws in end-of-life DIR-878 routers — www.bleepingcomputer.com — 20.11.2025 17:38
- D-Link warns of new RCE flaws in end-of-life DIR-878 routers — www.bleepingcomputer.com — 20.11.2025 17:38