AI Agent Uncovers Unauthenticated Router Config Dump Leading to CVE Filing
An experienced security engineer running a home lab with Proxmox VE asked an LLM agent to document router administration methods. The agent was given only basic port information and instructed to verify available functionality. Overnight the agent located an unauthenticated configuration read endpoint on the router’s web interface.
The endpoint returned approximately 37 KB of configuration data containing the administrative password in base64, all WPA2 pre-shared keys, service credentials, and full network settings. The agent confirmed that the corresponding write endpoint correctly required authentication, indicating a design flaw rather than an intentional backdoor. It then used the extracted credentials to obtain a valid session cookie, proving full administrative access was possible from any device on the LAN.
Technical details and classification
The router runs an ancient Boa web server exposing a single-page application built with jQuery. JavaScript bundles revealed the real API endpoints. The flaw was classified as CWE-306 Missing Authentication for Critical Function, with secondary weaknesses CWE-522 and CWE-359. The agent calculated a CVSS 3.1 score of 8.8 (AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H).
External scans confirmed the issue is strictly LAN-facing because WAN management remains disabled. The researcher could not locate current firmware updates due to unresponsive vendor infrastructure, a fact also included in the disclosure.
Path to CVE registration
The agent prepared a bilingual coordinated disclosure report for the vendor and assembled the required fields for the MITRE CNA-LR submission using knowledge of the Vulnogram form. The researcher personally sent the email and submitted the CVE request. A parallel entry was created in VulDB. The 90-day disclosure window is now open.
Key takeaways for agent use in security research
- Read-only permission boundaries successfully limited the agent to reconnaissance and verification steps.
- The agent performed exhaustive enumeration of JavaScript files, endpoints, and public vulnerability databases far faster than a human researcher.
- Final actions requiring accounts or submissions remained under human control.
- Home labs provide a safe, legal environment for testing autonomous security agents.
Related articles
Splunk Enterprise Discloses 46 Vulnerabilities Including Critical Patroni Authentication Flaw
Splunk has published three security advisories detailing a total of 46 vulnerabilities affecting Splunk Enterprise and related components. Three of the issues were rated critical, with CVE-2026-76268 receiving a CVSS v3.1 base score of 9.8. The flaw resides in the Patroni REST API used for PostgreSQL cluster management within search head clusters, allowing unauthenticated remote attackers to execute arbitrary operating system commands. Another high-severity issue, CVE-2026-76266, enables local privilege escalation to root on Linux systems during package updates. The remaining vulnerabilities cover product code, internally identified problems, and third-party packages. Organizations are urged to apply the available patches promptly.
Smart Fish Tank Power Strip Server Breached, Killing Aquarium Fish During National Day Holiday
During China's National Day holiday, the cloud servers of Woda Technology's smart power strips for fish tanks were compromised by malicious hackers, causing widespread remote disconnections and power outages for user devices. The attack left heating rods, oxygen pumps, and circulation systems offline for hours, resulting in the deaths of koi, arowana, and other ornamental fish that users had maintained for years. Woda issued a public notice confirming the intrusion was not a product defect or user error but a deliberate network attack, and the company has since upgraded firewalls, added multi-layer cloud protections, deployed backup servers, and improved local offline logic to prevent future failures. The incident highlights a critical IoT design flaw where devices rely entirely on vendor cloud platforms for control, allowing attackers who breach the server to remotely manage household appliances at scale. Security experts note that the same architecture is used across smart speakers, locks, cameras, and other consumer devices, creating a broad attack surface with minimal updates or segmentation. Woda has reported the case to authorities and preserved logs for forensic investigation.
CISA Adds Five Actively Exploited Vulnerabilities in Apache Struts, BIND, ProFTPD, Strapi and ONLYOFFICE Docs to KEV Catalog
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) added five vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog on October 8, 2026, confirming active exploitation in the wild. The affected products include Apache Struts, BIND, ProFTPD, Strapi, and ONLYOFFICE Docs, with CVEs issued between 2015 and 2023. Federal agencies have until October 11, 2026, to apply mitigations or remove affected systems. One highlighted issue, Strapi CVE-2023-22894, stems from plaintext storage of sensitive information, allowing authenticated attackers to extract user data via query filters. When combined with CVE-2023-22621, the flaws enable remote code execution. CISA also warned that some impacted products may no longer receive vendor support.
FBI Issues Alert on Active FortiBleed Campaign Harvesting Credentials from Exposed FortiGate Firewalls
The FBI and United States Secret Service have issued a joint alert regarding the FortiBleed campaign, an ongoing operation that targets internet-exposed FortiGate firewalls and SSL VPN gateways. Attackers have already collected 86,644 valid credentials from devices across 194 countries as of June 19, demonstrating the global scale of the indiscriminate scanning effort. The campaign relies on reused or previously leaked credentials combined with legacy SHA-256 password storage that enables offline cracking. Operators employ automated credential stuffing, the Go-based FortigateSniffer tool capable of intercepting 24 authentication protocols, and GPU-accelerated password cracking. Once inside, attackers create unauthorized administrator accounts and often delete legitimate ones, forcing victims to perform full device recovery rather than simple password resets. The activity was first documented in June, with the official alert released on October 7, confirming that scanning continues.