Raleigh, NC

32°F
Scattered Clouds Humidity: 79%
Wind: 2.06 M/S

ASUS Presses Users to Urgently Patch Critical AiCloud Router Flaw

ASUS Presses Users to Urgently Patch Critical AiCloud Router Flaw

ASUS Warns of Critical Security Flaw in Routers with AiCloud Enabled 

ASUS has issued an urgent security advisory regarding a high-severity vulnerability affecting certain routers with AiCloud enabled, potentially allowing remote attackers to execute unauthorized commands. 

The flaw, identified as CVE-2025-2492, has been rated 9.2 out of 10 on the CVSS scale, classifying it as a critical threat. 

According to ASUS security researchers, the issue stems from an improper authentication control vulnerability found in specific router firmware versions. Attackers can exploit this flaw by sending specially crafted requests to affected devices. 

Firmware Updates Released 

To address the issue, ASUS has released firmware patches for the following firmware versions: 
3.0.0.4_382, 3.0.0.4_386, 3.0.0.4_388, and 3.0.0.6_102. 
Users are urged to immediately update their routers via the official ASUS support page or the product-specific networking page. 

Recommended Security Practices 

In addition to applying firmware updates, ASUS has advised users to strengthen their overall device security: 

  • Set different, strong passwords for your wireless network and router admin page. 
  • Use passwords with at least 10 characters, including uppercase letters, numbers, and symbols. 
  • Avoid reusing passwords across different platforms or using predictable combinations like "1234567890" or "qwertyuiop". 

For devices that are no longer supported or cannot be patched right away, ASUS recommends: 

  • Ensuring strong login and Wi-Fi credentials. 

Disabling AiCloud and any internet-accessible features, such as: 

  • Remote access from WAN 
  • Port forwarding 
  • DDNS 
  • VPN 
  • Server functions 
  • DMZ 
  • Port triggering 
  • FTP services 

By taking these measures, users can significantly reduce the risk of exploitation until a permanent solution is applied. 

 

Found this article interesting? Follow us on X(Twitter) ,Threads and FaceBook to read more exclusive content we post. 

Image

With Cybersecurity Insights, current news and event trends will be captured on cybersecurity, recent systems / cyber-attacks, artificial intelligence (AI), technology innovation happening around the world; to keep our viewers fast abreast with the current happening with technology, system security, and how its effect our lives and ecosystem. 

Please fill the required field.