VulnCheck warns of hidden backdoor in 20+ Chinese router models
August 6, 2026
  • Read Ecopy
  • Circulation
  • Advertise
  • Careers
  • About Us
  • Contact Us
Android AppiPhone AppArattai
Organiser
  • ‌
  • Bharat
    • Assam
    • Bihar
    • Chhattisgarh
    • Jharkhand
    • Maharashtra
    • View All States
  • World
    • Asia
    • Europe
    • North America
    • South America
    • Africa
    • Australia
  • Editorial
  • International
  • Opinion
  • RSS @ 100
  • More
    • Op Sindoor
    • Analysis
    • Sports
    • Defence
    • Politics
    • Business
    • Economy
    • Culture
    • Special Report
    • Sci & Tech
    • Entertainment
    • G20
    • Azadi Ka Amrit Mahotsav
    • Vocal4Local
    • Web Stories
    • Education
    • Employment
    • Books
    • Interviews
    • Travel
    • Law
    • Health
    • Obituary
  • Subscribe
    • Subscribe Print Edition
    • Subscribe Ecopy
    • Read Ecopy
  • ‌
  • Bharat
    • Assam
    • Bihar
    • Chhattisgarh
    • Jharkhand
    • Maharashtra
    • View All States
  • World
    • Asia
    • Europe
    • North America
    • South America
    • Africa
    • Australia
  • Editorial
  • International
  • Opinion
  • RSS @ 100
  • More
    • Op Sindoor
    • Analysis
    • Sports
    • Defence
    • Politics
    • Business
    • Economy
    • Culture
    • Special Report
    • Sci & Tech
    • Entertainment
    • G20
    • Azadi Ka Amrit Mahotsav
    • Vocal4Local
    • Web Stories
    • Education
    • Employment
    • Books
    • Interviews
    • Travel
    • Law
    • Health
    • Obituary
  • Subscribe
    • Subscribe Print Edition
    • Subscribe Ecopy
    • Read Ecopy
Organiser
  • Home
  • Bharat
  • World
  • Operation Sindoor
  • Editorial
  • Analysis
  • Opinion
  • Culture
  • Defence
  • International Edition
  • RSS @ 100
  • Magazine
  • Read Ecopy
Home World

Think Before Buying: Hidden backdoor found in 20+ Chinese Router models, warns cybersecurity firm VulnCheck

According to the findings, the hidden backdoor automatically attempts to communicate with a fixed set of remote endpoints. Whoever controls those domains could potentially gain control of the router itself and subsequently access other devices operating on the same local network

Dr Vishnu AravindDr Vishnu Aravind
Aug 6, 2026, 03:00 pm IST
inWorld, China, International Edition
Follow on Google News
A newly discovered hidden backdoor in Chinese-made routers has intensified global concerns over cybersecurity and supply-chain security

A newly discovered hidden backdoor in Chinese-made routers has intensified global concerns over cybersecurity and supply-chain security

Facebook
Twitter
WhatsAppTelegramEmail

New Delhi: A cybersecurity investigation has uncovered a hidden backdoor in more than 20 models of Chinese-made wireless routers sold across global markets, raising fresh concerns over the security of networking equipment manufactured by Chinese companies. The discovery, announced on August 5 by cybersecurity firm VulnCheck, comes amid increasing Western scrutiny of Chinese technology products and follows a series of regulatory actions in the United States targeting foreign-made networking devices over national security concerns.

The vulnerability was identified by Jacob Baines, Chief Technology Officer at VulnCheck, who revealed in a blog post that the hidden backdoor, named “Endlessdoors,” affects routers manufactured by Shenzhen Zhibotong Electronics Co. and marketed under the Zbtlink and Wiflyer brand names. According to Baines, the flaw could potentially allow unauthorised access to devices connected to affected networks.

Routers function as the gateway between internet-connected devices and the wider internet, directing data traffic to computers, smartphones, smart televisions, surveillance cameras and numerous other connected devices. Because they control network traffic, any vulnerability in a router has the potential to expose an entire home or business network to compromise.

Hidden “Endlessdoors” backdoor raises security concerns

Baines estimates that at least 100,000 of the affected routers have already been deployed worldwide. According to his findings, the hidden backdoor automatically attempts to communicate with a fixed set of remote endpoints. Whoever controls those domains could potentially gain control of the router itself and subsequently access other devices operating on the same local network.

Explaining the seriousness of the issue, Baines noted that many users purchasing these routers for home offices or small businesses would likely have no indication that such a capability exists within the devices.
“If I have it in my lab, in my lab at my university, you just invited them straight into your lab and they can roam the network as they choose,” Baines said, describing the vulnerability as having “devastating” capabilities.

The findings add to longstanding warnings issued by several Western governments regarding cybersecurity risks associated with Chinese-made networking equipment. Authorities have repeatedly cautioned that Chinese-linked hackers have exploited routers and other internet-connected devices used in homes and small offices to establish long-term access for cyber intrusions, espionage operations and broader network compromises.

China has consistently rejected such allegations. Beijing has repeatedly denied supporting or carrying out cyberattacks or cyberespionage activities.

Discovery comes amid heightened US scrutiny

The VulnCheck findings emerge as US authorities continue tightening scrutiny of networking products manufactured by companies with links to China.

In March, the Federal Communications Commission (FCC) announced restrictions on imports of certain foreign-made consumer routers, citing national security concerns. In a statement issued on March 23, the FCC said foreign-made routers had been exploited by malicious actors to target American households, disrupt communications networks, conduct espionage operations and steal intellectual property.
The Commission also stated that foreign-made routers had been involved in the Volt Typhoon, Flax Typhoon and Salt Typhoon cyber campaigns targeting critical US infrastructure.

Earlier, in February, the US state of Texas filed a lawsuit against TP-Link Systems, alleging that the networking company exposed American consumers’ devices to access by the Chinese regime.

Responding to the lawsuit, TP-Link Systems, which was later spun off from its original Chinese parent company, rejected the allegations. The company stated that it would “vigorously defend” its reputation, described the accusations as “without merit,” and maintained that the Chinese Communist regime neither owns nor controls the company, its products or customer data.

Also Read: Varanasi: Bhagwan Shiva-inspired cricket stadium set to blend Kashi’s spiritual heritage with modern sporting grandeur

The latest findings are therefore likely to add further momentum to the ongoing debate over the cybersecurity implications of networking equipment manufactured by Chinese companies and the broader supply-chain risks associated with internet infrastructure.

More than 20 Router models identified

Alongside its technical findings, VulnCheck released the complete list of affected router models on August 5 and advised organisations to determine whether any of the identified devices remain in use within their networks.

The company emphasised that users should identify affected hardware by the specific model number rather than relying solely on the brand name. According to VulnCheck, Zbtlink manufactures routers for several other companies through Original Equipment Manufacturer (OEM) and Original Design Manufacturer (ODM) agreements, meaning identical hardware may appear under different commercial brands.

The affected router models identified by VulnCheck are CPE2801, WE1026-5G-WD, WE1326, WE2007, WE2008-DSIM, WE2416, WE3326, WE5927, WE5931, WE5931AC, WE826-T3-DSIM, WG108, WG1602, WG1608-DSIM, WG209, WG2105, WG2107, WG259, WG3526 and Z8102AX-2DSIM.

The discovery represents one of the most significant disclosures involving Chinese-manufactured wireless routers in recent months and is expected to further intensify global discussions over cybersecurity, supply-chain security and the growing scrutiny of technology products originating from China.

 

Topics: Network SecurityCyber ThreatsCybersecurityChinese RoutersVulnCheckEndlessdoors BackdoorRouter Security VulnerabilityShenzhen Zhibotong Electronics
Share
Tweet
SendShareSend
✮ Subscribe Organiser YouTube Channel. ✮
✮ Join Organiser's WhatsApp channel for Nationalist views beyond the news. ✮
Previous News

India-Russia to celebrate 80 years of diplomatic & strategic partnership; Sets $100 bilateral trade target by 2030

Related News

Election Commission’s ECINET platform blocked 68 lakh cyber attacks on May 4 counting day

Burgess, the head of ASIO, warns that Beijing-backed hackers are preparing for large-scale attacks on critical networks

Australia warns of intensifying Chinese cyber threat to critical infrastructure

Representative image

UK cybersecurity agency warns of Chinese spyware targeting Uyghurs, Tibetans, and Taiwanese

Logo of DeepSeek

Flawed privacy policy, silence on Chinese politics make DeepSeek unsafe and highly vulnerable

Representative Image

Unlocking the Future: Top emerging technology trends in 2024

Representative Image

Big data analytics, cybersecurity & nanotechnology transforming the Food & Beverage Industry

Load More

Latest News

A newly discovered hidden backdoor in Chinese-made routers has intensified global concerns over cybersecurity and supply-chain security

Think Before Buying: Hidden backdoor found in 20+ Chinese Router models, warns cybersecurity firm VulnCheck

Russian President Vladimir Putin and Prime Minister Narendra Modi(File Photo)

India-Russia to celebrate 80 years of diplomatic & strategic partnership; Sets $100 bilateral trade target by 2030

NIA Arrests Most Wanted Accused Umar Farooq in Praveen Nettaru Murder Case

Praveen Nettaru Murder Case: NIA arrests key accused Umar Farooq after four-year hunt

Bombay High Court convicts Tarun Tejpal in 2013 sexual assault case

Bombay High Court convicts former Tehelka editor Tarun Tejpal in 2013 rape case, overturns 2021 acquittal

Karnataka: BJP alleges cabinet expansion driven by ‘Payment Quota’, slams Congress over Nagendra’s re-induction

Prime Minister Narendra Modi & Meta CEO Mark Zuckerberg

Meta’s PM Modi video removal sparks concerns over accountability to Indian laws & digital sovereignty: Cyber Experts

Uttar Pradesh Cabinet has approved amendments to the Madrasa Education Act, ending the recognition of Kamil and Fazil degrees

Uttar Pradesh: Yogi government ends recognition of Kamil and Fazil degrees in line with Supreme Court ruling

13 Suspected Bangladeshis Detained Again in Gwalior, MP

Madhya Pradesh on alert: 13 suspected Bangladeshis detained, investigators trace illegal entry network

Centre says NEP 2020 strengthens health education, yoga, nutrition and environmental awareness across Indian schools

From PM POSHAN to Eco Clubs: Centre explains how NEP 2020 promotes healthy and environment-friendly schools

Illegal Bangladeshis deported (This image is generated by AI)

Odisha Police deport 42 illegal Bangladeshi nationals; Six more await repatriation

Load More
  • Privacy
  • Terms
  • Cookie Policy
  • Refund and Cancellation
  • Delivery and Shipping

© Bharat Prakashan (Delhi) Limited.
Tech-enabled by Ananthapuri Technologies

  • Home
  • Search Organiser
  • Bharat
    • Assam
    • Bihar
    • Chhattisgarh
    • Jharkhand
    • Maharashtra
    • View All States
  • World
    • Asia
    • Africa
    • North America
    • South America
    • Europe
    • Australia
  • Editorial
  • Operation Sindoor
  • Opinion
  • Analysis
  • Defence
  • Culture
  • Sports
  • Business
  • RSS @ 100
  • Entertainment
  • More ..
    • Sci & Tech
    • Vocal4Local
    • Special Report
    • Education
    • Employment
    • Books
    • Interviews
    • Travel
    • Health
    • Politics
    • Law
    • Economy
    • Obituary
  • Subscribe Magazine
  • Read Ecopy
  • Advertise
  • Circulation
  • Careers
  • About Us
  • Contact Us
  • Policies & Terms
    • Privacy Policy
    • Cookie Policy
    • Refund and Cancellation
    • Terms of Use

© Bharat Prakashan (Delhi) Limited.
Tech-enabled by Ananthapuri Technologies