Comment Merlin FW may not address this exploit (Score 1) 148
Hi all, it's an honor to be linked by /. as part of this story. I wanted to post to draw further attention to what has already been discussed here: it hasn't yet been confirmed that the fix from months ago addresses all vulnerabilities mentioned. As Eric, the author of the firmware stated, please ensure the AI Cloud and FTP services are disabled for now if using this firmware. I would further add (also already discussed here) that a better-safe-than-sorry approach is to stick to alternative software for "AI Cloud"/FTP solutions. For example, if I needed FTP, I'd rather use a much tested/hardened/known good dedicated FTP solution rather than one baked into any router.
Thanks!