
TP-Link Zero-Touch Provisioning Flaws Enable Device Hijacking and Remote Code Execution
A newly disclosed 15 vulnerabilities in TP-Link’s Omada Zero-Touch Provisioning (ZTP) ecosystem that can be chained to hijack devices, expose credentials, compromise controllers, and potentially gain remote code execution on managed network appliances. The findings, released by Forescout Research’s Vedere Labs ahead of Black Hat USA 2026, affect elements of Omada’s cloud, hardware, and software […]
The post TP-Link Zero-Touch Provisioning Flaws Enable Device Hijacking and Remote Code Execution appeared first on Cyber Security News.