:

D-LINK WARNS OF CRITICAL ZERO-DAY IN DIR-822A ROUTERS

SECURITY DESK1 MIN READ
TUE, SEP 22, 2026

■ AI-SUMMARIZED FROM 1 SOURCE ▸ TIMELINE

D-Link has alerted users of a maximum-severity zero-day vulnerability (CVE-2026-86296) affecting DIR-822A dual-band Wi-Fi routers. The flaw has no available patch and public exploit code is already circulating.

The vulnerability poses immediate risk to users of the legacy DIR-822A router model. With proof-of-concept exploit code publicly available and no security patch released, the threat level is elevated. D-Link has not disclosed specific technical details about the flaw's nature or attack vector. The company has not provided a timeline for when a fix will be available. Users of DIR-822A routers should monitor D-Link's security advisories for patch availability. As a temporary mitigation, restricting network access and disabling unnecessary features may reduce exposure. D-Link has not announced whether other router models are affected by this vulnerability. The DIR-822A is an older device, and the presence of public exploits suggests threat actors may begin targeting installations soon.

■ SOURCES

Bleeping Computer

■ SUMMARY WRITTEN BY AI FROM THE LINKS ABOVE

■ MORE FROM THE SECURITY DESK

A cross-site request forgery (CSRF) vulnerability in WordPress Core, dubbed 'Click2Shell,' enables attackers to execute PHP code on vulnerable servers. Technical details and working exploits are now public.

8H AGOSecurity Desk

The ShinyHunters extortion group took control of the dark web leak site belonging to the prolific Cl0p ransomware gang over the weekend. The attackers set an eight-figure extortion demand pegged at 2.333% of Cl0p's estimated net worth.

9H AGOSecurity Desk

The FBI's CJIS Security Policy v6.1 strengthens encryption requirements and vulnerability scanning mandates. Agencies must prepare for updated password, MFA, and identity verification standards ahead of compliance audits.

12H AGOSecurity Desk

New research reveals that digital watermarks intended to protect content ownership are being repurposed as surveillance mechanisms to track user behavior and identify individuals across platforms.

12H AGOIndustry Desk

■ SUBSCRIBE TO THE DAILY BRIEF

ONE EMAIL, 5 STORIES, 06:00 UTC. UNSUBSCRIBE ANYTIME.