ZeroSecurity - Information Security News
  • Home
  • Security
    • Exploits
    • Mobile Security
  • Malware
  • Breaches
  • Crypto
  • Privacy
  • Tech
    • AI
    • Downloads
      • Malwarebytes
      • Exploits
      • Paper Downloads
    • Reviews
No Result
View All Result
SUBSCRIBE
ZeroSecurity - Information Security News
  • Home
  • Security
    • Exploits
    • Mobile Security
  • Malware
  • Breaches
  • Crypto
  • Privacy
  • Tech
    • AI
    • Downloads
      • Malwarebytes
      • Exploits
      • Paper Downloads
    • Reviews
No Result
View All Result
ZeroSecurity - Information Security News
No Result
View All Result
Home Exploits

Vulnerability (CVE-2024-54143 ) Discovered in OpenWrt’s Firmware Upgrade System

Kyle by Kyle
December 13, 2024
in Exploits
Reading Time: 2 mins read
Discover the critical CVE-2024-54143 vulnerability in OpenWrt's Attended Sysupgrade, a severe exploit that could compromise router firmware security and network integrity.
Share on FacebookShare on Twitter

OpenWrt’s Attended Sysupgrade (ASU) feature has a severe security vulnerability, potentially exposing users to significant cybersecurity risks. The flaw, CVE-2024-54143, represents a critical threat to the popular open-source Linux-based operating system widely used in networking devices.

Vulnerability Details

Security researcher RyotaK from Flatt Security first disclosed the vulnerability on December 4, 2024, with the issue receiving a staggering CVSS score of 9.3 out of 10 – a rating that signals extreme severity. The technical intricacies of the exploit revolve around a complex combination of command injection and hash collision vulnerabilities.

How the Exploit Works

The vulnerability allows potential attackers to manipulate the firmware build process through a sophisticated method:

  • Inject arbitrary commands into the imagebuilder image
  • Exploit a weakness in the SHA-256 hash verification
  • Potentially distribute malicious firmware packages signed with legitimate build keys

What makes this vulnerability particularly dangerous is its supply chain attack potential. Threat actors could:

You might also like

Hackers Exploit Maximum-Severity Cisco Zero-Day Bug Since 2023 (CVE-2026-20127)

DoubleClickjacking – The Stealthy New Web Exploit Threatening User Security

Critical Vulnerabilities Exposed in Ruijie Networks Cloud Platform

  • Generate malicious firmware images
  • Replace legitimate images with compromised versions
  • Execute unauthorized commands during the build process

Technical Breakdown

According to OpenWrt’s maintainers, the exploit requires an attacker to:

  • Submit build requests with crafted package lists
  • Leverage a 12-character SHA-256 hash collision
  • Manipulate the firmware generation process without authentication

Mitigation and Recommendations

OpenWrt has already patched the vulnerability in ASU version 920c8a1. Security experts strongly recommend that users:

  • Update to the latest version immediately
  • Verify firmware sources
  • Monitor for any suspicious system behaviors

Expert Insight

RyotaK noted that while it remains uncertain whether the vulnerability was previously exploited, its potential impact cannot be understated. The researcher emphasized the importance of prompt updates and vigilant system management.

Previous Post

Chinese Hackers Breach US Telecommunications Providers in Massive Espionage Campaign

Next Post

Rhode Island Government Hacked – RIBridges System Shut Down After Potential Data Exposure

Kyle

Kyle

Writer, and editor at ZeroSecurity. Interested in Information Security, the Blockchain, and an overall tech enthusiast. "Formal education will make you a living; self-education will make you a fortune." Contact me here: [email protected]

Recommended For You

Photo of the CISCO logo and text saying "You have been hacked!"

Hackers Exploit Maximum-Severity Cisco Zero-Day Bug Since 2023 (CVE-2026-20127)

March 6, 2026
What is DoubleClickJacking?

DoubleClickjacking – The Stealthy New Web Exploit Threatening User Security

January 1, 2025

Critical Vulnerabilities Exposed in Ruijie Networks Cloud Platform

December 25, 2024

Cybercriminals Unleash Advanced Phishing-as-a-Service Toolkit Targeting Microsoft 365 Users

November 29, 2024

Major Security Vulnerability Uncovered in qBittorrent Client

November 1, 2024

CISA Adds Critical Microsoft SharePoint Vulnerability (CVE-2024-38094) to Known Exploited Vulnerabilities Catalog

October 23, 2024

Related News

Malicious Chrome Extensions Steal AI Data and Hijack Revenue in DarkSpectre Campaign

Malicious Chrome Extensions Steal AI Data and Hijack Revenue in DarkSpectre Campaign

January 30, 2026
KPMG Netherlands Listed as Victim by Nova Ransomware Group

KPMG Netherlands Listed as Victim by Nova Ransomware Group

January 24, 2026
RansomHouse Claims Breach of Key Apple Assembler Luxshare

RansomHouse Claims Breach of Key Apple Assembler Luxshare

January 20, 2026
ZeroSecurity - Information Security News

We cover the latest in technology news, Crypto, Artificial Intelligence, and the threat trends impacting these sectors.

Categories

Piracy

Tutorials

Programming

Malware Analysis

Downloads

  • Contact us
  • Press
  • Writers
  • Privacy Policy
  • Terms of Service

© 2026 ZeroSecurity, All Rights Reserved.

No Result
View All Result
  • Home
  • Security
    • Tools
  • Exploits
  • Data Breaches
  • Malware
  • Privacy
  • Mobile Security
  • Contact Us
    • Press
  • Privacy Policy

© 2026 ZeroSecurity, All Rights Reserved.

This website uses cookies. By continuing to use this website you are giving consent to cookies being used. Visit our Privacy and Cookie Policy.