CVE-2024-3721 and CVE-2023-33538 exploited in TBK DVRs and EoL TP-Link routers, enabling Mirai variants and DDoS risk.
A single unauthenticated connection gives attackers a full shell; credential theft observed in under three minutes on honeypot servers.