DrayTek a leading manufacturer of network equipment has released information on a Zero Day Attack that could compromise a large number of their routers.

The attack targets the DNS settings allowing them to be changed and therefore directing users web requests to potentially harmful sites.

DrayTek have already released firmware for most of the router models affected to mitigate the vulnerability and are urging customers to update to this version as soon as possible.

Full details from DrayTek can be found here: https://www.draytek.co.uk/support/security-advisories/kb-advisory-csrf-and-dns-dhcp-web-attacks.