Malawi is warning users of MikroTik routers about critical vulnerabilities that could allow cybercriminals to gain unauthorised control of affected devices.
The Malawi Communications Regulatory Authority (MACRA), through the Malawi Computer Emergency Response Team (CERT), has alerted the public to the vulnerabilities and urged individuals, businesses, organisations and internet service providers (ISPs) using MikroTik routers to take immediate action.
The vulnerabilities, collectively referred to as “MikroTrick”, are being actively exploited worldwide, according to Malawi CERT.
Malawi CERT advised MikroTik users to update their Router Operating System (RouterOS) immediately to the latest stable, security-patched version applicable to their device.
Users who manage their own routers should apply the update through the administration interface, while those whose routers are managed by an ISP or service provider should request an update from the provider.
MikroTik has released security fixes for the affected RouterOS versions and recommends that users upgrade their devices and ensure SSH is not accessible from untrusted networks.
CERT also advised users to inspect their router configurations after upgrading for unknown scripts, users or other settings they do not recognise.
The warning follows reports of active exploitation of the vulnerabilities against internet-accessible RouterOS devices. The vulnerabilities can allow attackers to gain unauthorised access and, in some circumstances, take control of affected devices.
The vulnerabilities affect MikroTik RouterOS and include CVE-2026-67276, CVE-2026-86060 and CVE-2026-67277.
Malawi CERT is a specialised unit under MACRA and serves as the national focal point for coordinating cybersecurity incidents and threat responses.
Members of the public and organisations requiring assistance or wishing to report a suspected cybersecurity incident have been encouraged to contact Malawi CERT through its official channels.
Share

