Dan Goodin reports that attackers are targeting a flaw in theUbiquiti's AirOS that runs many of its wireless routers and access points. The vulnerability allows attackers to gain access to devices via HTTP or HTTPS without authentication and changes the infected device's password files.
A patch for the flaw was issued last July, but apparently hasn't been widely installed.