• Home
  • Latest
  • Fortune 500
  • Finance
  • Tech
  • Leadership
  • Lifestyle
  • Rankings
  • Multimedia

Trendingnow

1

The Iran conflict has disrupted oil supply. Gulf states are now looking to multi-billion-dollar investments in renewables 

2

Erin Brockovich, the activist who defeated a utility giant and inspired a Julia Roberts film, is pushing data centers to be more transparent

3

Current price of oil as of June 1, 2026

1

The Iran conflict has disrupted oil supply. Gulf states are now looking to multi-billion-dollar investments in renewables 

2

Erin Brockovich, the activist who defeated a utility giant and inspired a Julia Roberts film, is pushing data centers to be more transparent

3

Current price of oil as of June 1, 2026
TechCybersecurity

Unplug Your Easily Hijacked Netgear Routers Pronto

Robert Hackett
By
Robert Hackett
Robert Hackett
Down Arrow Button Icon
Robert Hackett
By
Robert Hackett
Robert Hackett
Down Arrow Button Icon
December 12, 2016, 7:44 PM ET
Inside Russian Internet Retailer Ulmart's Fulfillment Center As Sales Top $1b
An employee organises a stock of Netgear Inc. internet routers in the goods warehouse inside a fulfilment center operated by Ulmart, Russia's largest online electronics retailer, in Saint Petersburg, Russia, on Friday, March 7, 2014. Ulmart, the online electronics retailer backed by ex-Lenta Ltd. shareholders Dmitry Kostygin and August Meyer seeks to grow 60% this year as it expands into regions, with new product categories such as children goods, auto parts. Photographer: Andrey Rudakov/Bloomberg via Getty ImagesAndrey Rudakov—Bloomberg via Getty Images

Netgear has yet to fix a critical vulnerability uncovered by a hacker in several of its home Wi-Fi router models.

A security researcher using the online alias “Acew0rm” discovered the flaw, which allows attackers to gain complete control of affected routers with minimal effort. Last week, the researcher released the details of a simple exploit, or code that takes advantage of the vulnerability.

Acew0rm alerted Netgear to the problem on Aug. 25, but never heard back, the researcher told Fortune in a direct message on Twitter. So four months later, Acew0rm took the find public.

Netgear did not immediately reply to Fortune’s request for comment.

“Exploiting this vulnerability is trivial,” US-CERT, a cybersecurity unit within the Department of Homeland Security, warned in a bulletin on Friday. The note urged consumers to “strongly consider discontinuing use of affected devices until a fix is made available.”

Get Data Sheet, Fortune’s technology newsletter.

To take over a Netgear customer’s machine, an attacker must merely append commands, or computer instructions, to a URL being accessed by someone on an affected network. An attacker can do this by tricking a person into clicking on a malicious link or visiting a booby-trapped website that is running the exploit code.

Because the Netgear routers fail to filter out unauthorized commands, they easily succumb to an attacker’s bidding. With the correct set of instructions—for instance, opening Telnet, a channel that admits remote logins on a certain router port—the device becomes compromised.

Netgear acknowledged the problem in a brief security advisory posted Sunday. The networking equipment maker pointed to three models that are possibly vulnerable: its R7000, R6400, and R8000 routers.

The problem may be more extensive than Netgear has let on, however. Another security researcher who goes by the alias “Kalypto Pink” warned in a separate post that additional models are also open to attack.

For more on hacking, watch:

“I have tested all models below, with the exception of the R9000, and have found them to be vulnerable,” Kalypto said. The researcher listed the following routers.

  • NetGear AC1750-Smart WiFi Router (Model R6400)
  • NetGear AC1900-Nighthawk Smart WiFi Router (Model R7000)
  • NetGear AC2300-Nighthawk Smart WiFi Router with MU-MIMO (Model R7000P)
  • NetGear AC2350-Nighthawk X4 AC 2350 Dual Band WiFi Router (Model R7500)
  • NetGear AC2600-Nighthawk X4S Smart WiFi Gaming Router (Model R7800)
  • NetGear AC3200-Nighthawk AC3200 Tri-Band WiFi Router (Model R8000)
  • NetGear AC5300-AC5300 Nighthawk X8 Tri-Band WiFi Router (Model R8500)
  • NetGear AD7200-Nighthawk X10 Smart WiFi Router (R9000)

Some researchers have devised a temporary fix that involves exploiting the vulnerability itself. It’s simple, though the simplest solution is simply to switch off your router until further notice.

Here’s how the workaround works. You can block attacks simply by clicking on a version of the following link, http://[router-address]/cgi-bin/;killall$IFS’httpd’, except replace “[router-address]” with your router’s locally assigned IP address, as Bas van Shaick, a Dutch data scientist, noted on his personal blog. (For reference, here’s a primer on determining your router’s IP address.)

Clicking on that link will execute a command that disables the web server embedded in affected routers, preventing them from processing incoming commands without affecting their ability to connect to the Internet.

To see whether the workaround succeeded, simply click on a version of the following link, http://[router-address]/cgi-bin/;uname$IFS-a, except once again replace “[router-address]” with your router’s locally assigned IP address. The accessed Web page should show a error or blank page, otherwise you can assume that the fix didn’t work.

Be careful though, the workaround will last only so long as the router is not rebooted. Until the networking equipment maker pushes patches, its probably wisest for customers to unplug affected devices.

About the Author
Robert Hackett
By Robert Hackett
Instagram iconLinkedIn iconTwitter icon
See full bioRight Arrow Button Icon

Latest in Tech

Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025

Most Popular

Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Fortune Secondary Logo
Rankings
  • 100 Best Companies
  • Fortune 500
  • Global 500
  • Fortune 500 Europe
  • Most Powerful Women
  • World's Most Admired Companies
  • See All Rankings
  • Lists Calendar
Sections
  • Finance
  • Fortune Crypto
  • Features
  • Leadership
  • Health
  • Commentary
  • Success
  • Retail
  • Mpw
  • Tech
  • Lifestyle
  • CEO Initiative
  • Asia
  • Politics
  • Conferences
  • Europe
  • Newsletters
  • Personal Finance
  • Environment
  • Magazine
  • Education
Customer Support
  • Frequently Asked Questions
  • Customer Service Portal
  • Privacy Policy
  • Terms Of Use
  • Single Issues For Purchase
  • International Print
Commercial Services
  • Advertising
  • Fortune Brand Studio
  • Fortune Analytics
  • Fortune Conferences
  • Business Development
  • Group Subscriptions
About Us
  • About Us
  • Press Center
  • Work At Fortune
  • Terms And Conditions
  • Site Map
  • About Us
  • Press Center
  • Work At Fortune
  • Terms And Conditions
  • Site Map
  • Facebook icon
  • Twitter icon
  • LinkedIn icon
  • Instagram icon
  • Pinterest icon

Latest in Tech

U.S. Soccer COO Dan Helfrich and Nike COO Venkatesh Alagirisamy
ConferencesCOO Summit
6 years of jersey design, 4 years of prep, 4 weeks of games: Execs at U.S. Soccer and Nike know how much this World Cup means
By Preston ForeJune 1, 2026
3 hours ago
Ravi Kumar S.
ConferencesCOO Summit
Cognizant CEO is swimming against the tide on AI: he’s hiring over 20,000 graduates this year and says AI tokenmaxxing is a ‘vanity metric’
By Preston ForeJune 1, 2026
5 hours ago
gg
ConferencesAutomation
The automation illusion: Why AI is making COOs’ jobs harder, not easier
By Nick LichtenbergJune 1, 2026
5 hours ago
Grey rhinos, black swans, and the kidnapping of Nancy Guthrie: What Corporate America still gets wrong about risk
Conferencescyber
Grey rhinos, black swans, and the kidnapping of Nancy Guthrie: What Corporate America still gets wrong about risk
By Nick LichtenbergJune 1, 2026
5 hours ago
gh
AIdisruption
The ‘godfather of AI’ says we’re not just creating new beings — they’ll be much smarter than us, and soon
By Nick LichtenbergJune 1, 2026
6 hours ago
‘Nobody’s safe’: Cognizant projected 90% of jobs would be disrupted by 2032—but we’re beyond it 6 years early
ConferencesCOO Summit
‘Nobody’s safe’: Cognizant projected 90% of jobs would be disrupted by 2032—but we’re beyond it 6 years early
By Preston ForeJune 1, 2026
7 hours ago

Most Popular

The Iran conflict has disrupted oil supply. Gulf states are now looking to multi-billion-dollar investments in renewables 
Energy
The Iran conflict has disrupted oil supply. Gulf states are now looking to multi-billion-dollar investments in renewables 
By Melissa HancockJune 1, 2026
14 hours ago
Erin Brockovich, the activist who defeated a utility giant and inspired a Julia Roberts film, is pushing data centers to be more transparent
Environment
Erin Brockovich, the activist who defeated a utility giant and inspired a Julia Roberts film, is pushing data centers to be more transparent
By Marco Quiroz-GutierrezJune 1, 2026
11 hours ago
Current price of oil as of June 1, 2026
Personal Finance
Current price of oil as of June 1, 2026
By Joseph HostetlerJune 1, 2026
16 hours ago
Current price of silver as of Monday, June 1, 2026
Personal Finance
Current price of silver as of Monday, June 1, 2026
By Joseph HostetlerJune 1, 2026
16 hours ago
After issuing more than $20 billion in tariff refunds, the Trump administration is now pursuing legal action to bring the process to a standstill
Law
After issuing more than $20 billion in tariff refunds, the Trump administration is now pursuing legal action to bring the process to a standstill
By Sasha RogelbergJune 1, 2026
11 hours ago
I wrote that Boomers were choking America’s economy. Their responses to me were revealing
Personal Finance
I wrote that Boomers were choking America’s economy. Their responses to me were revealing
By Nick LichtenbergMay 31, 2026
2 days ago

© 2026 Fortune Media IP Limited. All Rights Reserved. Use of this site constitutes acceptance of our Terms of Use and Privacy Policy | CA Notice at Collection and Privacy Notice | Do Not Sell/Share My Personal Information
FORTUNE is a trademark of Fortune Media IP Limited, registered in the U.S. and other countries. FORTUNE may receive compensation for some links to products and services on this website. Offers may be subject to change without notice.