Rankiteo Logo
Rankiteo
Leader in Cyber Underwriting
Loading...
NEWRankiteo Cyber Underwriting Desktop - Score, price, and bind from your desktop
WindowsmacOSLinux
Download
Tenda North America

Tenda North America Vendor Cyber Rating & Cyber Score

tendaus.com

Tenda Technology is a globally recognized manufacturer of highly popular networking devices for consumers and small-to-medium sized businesses. We are fully committed to our loyal customers around the world and will continue to produce easy-to-install and affordable networking solutions. Tenda products include whole home coverage Wi-Fi mesh systems, Ethernet switches, broadband CPE, gateways, powerlines, mobile broadband devices, and IP cameras to name only a few. Excellent performance, reliable, easy to install and use, top-quality, and competitively priced are hallmarks of all Tenda products.


TNA A.I CyberSecurity Scoring

TNA
Company Information
Website:http://www.tendaus.com
Employees number:20
Number of followers:1,003
NAICS:51125
Industry Type:Computer Networking Products
Homepage:tendaus.com
TNA Risk Score (AI oriented)
Between 700 and 749
logo
TNAComputer Networking Products
Updated:
01/04/2026
745/1000
Moderate
Ba
AaaAaABaaBaBCaaCaC
Powered by our proprietary A.I cyber incident model
Insurance prefers TPRM score to calculate premium
TNA Global Score (TPRM)
xxxx
logo
TNAComputer Networking Products
•••
Score locked
Instant access to detailed risk factors
Vulnerabilities
Benchmark vs. industry & size peers
Findings

TNA
TNAModerate
Current Score
745Ba (MODERATE)
01000
1 incidents
-3 avg impact
Incident timeline with MITRE ATT&CK tactics, techniques, and mitigations.
JULY 2026
746Before Incident
JUNE 2026
746Before Incident
MAY 2026
746Before Incident
APRIL 2026
746Before Incident
MARCH 2026
748Before Incident
Vulnerability
04 Mar 2026TNA
n8n and Tenda: Tenda Routers Hit By Zerobot Malware Exploiting Command Injection Flaw

Zerobot Botnet Exploits Tenda and n8n Vulnerabilities in Ongoing Campaign

745After Incident
CRITICAL-3
TENN8N1772649116
Zerobot Botnet Exploits Tenda and n8n Vulnerabilities in Ongoing Campaign Akamai’s Security Incident Response Team (SIRT) has uncovered an active botnet campaign, Zerobot, leveraging recently disclosed vulnerabilities in Tenda AC1206 routers and the n8n workflow automation platform. First detected in mid-January 2026, the malware linked to the Mirai botnet family targets two critical flaws: CVE-2025-7544 and CVE-2025-68613. ### Exploited Vulnerabilities 1. CVE-2025-7544 (Tenda AC1206 – CVSS 8.8) - A remote stack-based buffer overflow in the `/goform/setMacFilterCfg` endpoint, caused by improper input handling in the `deviceList` parameter. - Allows unauthenticated attackers to execute arbitrary code, enabling denial-of-service (DoS) attacks or full device compromise. - A proof-of-concept (PoC) exploit was publicly released, simplifying attacks via crafted requests. 2. CVE-2025-68613 (n8n – CVSS 9.9) - A remote code execution (RCE) flaw in n8n’s workflow automation platform, stemming from insecure expression evaluations. - Unauthenticated attackers can execute arbitrary code, access environment variables, API keys, and configuration files, and move laterally within networks. - Affects versions 0.211.0 to 1.120.3, 1.121.0, and early 1.122.x. ### Attack Chain & Impact Zerobot exploits these vulnerabilities to deploy Mirai-based payloads. In observed attacks, threat actors: - Triggered a buffer overflow on vulnerable Tenda routers to execute a malicious shell script, tol.sh. - Downloaded the primary Zerobot payload, which employs evasion tactics including hosting on Vercel domains and obfuscating scripts. - Established command-and-control (C2) communication to deploy a multi-stage infostealer, targeting browser credentials, SSH keys, and Git repositories. Akamai’s global honeypot network detected active exploitation, with compromised systems used to propagate further attacks. The campaign underscores the growing sophistication of botnets in weaponizing recently disclosed CVEs, particularly in IoT devices and critical infrastructure tools like n8n. Organizations using affected Tenda or n8n versions remain at risk until patches are applied.
INCIDENT DETAILS -
TYPE
Botnet Campaign
MOTIVATION
Data Theft, Botnet Propagation, Lateral Movement
IMPACT
Browser credentialsSSH keysGit repositoriesTenda AC1206 routersn8n workflow automation platformOperational Impact: Denial-of-Service (DoS), Unauthorized Access, Lateral MovementIdentity Theft Risk: High
DATA BREACH
Browser credentialsSSH keysGit repositoriesSensitivity Of Data: HighData Exfiltration: Yes
FEBRUARY 2026
748Before Incident
JANUARY 2026
748Before Incident
DECEMBER 2025
748Before Incident
NOVEMBER 2025
748Before Incident
OCTOBER 2025
748Before Incident
SEPTEMBER 2025
748Before Incident
AUGUST 2025
748Before Incident

Frequently Asked Questions

?
What is the current A.I Rankiteo Cyber Score for TNA ?
?
What was TNA's A.I Rankiteo Cyber Score in June 2026 ?
?
What was TNA's A.I Rankiteo Cyber Score in May 2026 ?
?
What was TNA's A.I Rankiteo Cyber Score in April 2026 ?
?
What was TNA's A.I Rankiteo Cyber Score in March 2026 ?
?
What was TNA's A.I Rankiteo Cyber Score in February 2026 ?
?
What was TNA's A.I Rankiteo Cyber Score in January 2026 ?
?
What was TNA's A.I Rankiteo Cyber Score in December 2025 ?
?
What was TNA's A.I Rankiteo Cyber Score in November 2025 ?
?
What was TNA's A.I Rankiteo Cyber Score in October 2025 ?
?
What was TNA's A.I Rankiteo Cyber Score in September 2025 ?
?
What was TNA's A.I Rankiteo Cyber Score in August 2025 ?
?
What is the average per-incident point impact on TNA's A.I Rankiteo Cyber Score over the past 12 months ?
?
Where can I access detailed records of all cyber incidents associated with TNA ?
?
Where can I find a summary of the A.I Rankiteo Risk Scoring methodology ?
?
Where can I view TNA's profile page on Rankiteo ?
?
How accurate is the A.I Rankiteo Risk Scoring methodology ?
Tenda North America Cyber Scoring History | Rankiteo