Mikrotik SSH Zero Day Breakdown
Also available as a podcast
Open in SpotifyAbout this episode
In this special edition, Greg Sowell sits down with Tom Smyth to dig into the recent MikroTik security vulnerabilities, including a particularly dangerous SSH authentication bypass that has been actively exploited in the wild.
Tom was among the first people raising the alarm after his network was directly affected. He walks through how the compromise was discovered, what showed up in the logs, how quickly exposed MikroTik devices were hit, and how the incident was reported to MikroTik and Ireland’s National Cyber Security Centre.
Greg and Tom also discuss MikroTik’s response, the patched RouterOS releases, ways operators can reduce their attack surface, and why simply keeping management interfaces off the public Internet isn't enough.
The conversation expands into configuration-as-code, automated patching, post-change validation, credential rotation after a compromise, network management VRFs, security notification systems, and the growing role of AI models in discovering vulnerabilities that may have been hiding in software for decades.
**Sponsors**
https://preseem.com
**/Sponsors**
Connect With the Guests:
Greg Sowell
Website: gregsowell.com
Brothers WISP community: patreon.com/brotherswisp
Tom Smyth
CEO, Wireless Connect Ltd.
Email: tom.smyth(A T)wirelessconnect.eu
Wireless Connect: wirelessconnect.ie
Join the patron-only Slack at http://patreon.com/thebrotherswisp
Contact us at contactus (at) thebrotherswisp.com
http://facebook.com/thebrotherswisp
http://TheBrothersWISP.com