CVE-2024-3273: D-Link NAS Backdoor Account + Command Injection
Do D-Link NAS devices contain backdoors?
Multiple end-of-life D-Link NAS devices contain a hardcoded backdoor account and a command injection vulnerability in the nas_sharing.cgi endpoint. Unauthenticated attackers can execute arbitrary commands on the device.
Impact & Exploitation
Over 92,000 devices exposed on the internet. Devices are end-of-life with no patch available. Used for botnet recruitment, crypto mining, and as pivot points for internal network attacks.
How Precogs AI Detects D-Link NAS Backdoor Account + Command Injection
Precogs AI Binary SAST detects hardcoded credentials and command injection in compiled NAS and IoT firmware, identifying backdoor accounts in end-of-life network devices.