www.securityweek.com 4/20/2026, 4:18:45 PM · via preferred

BRIDGE:BREAK flaws hit Lantronix, Silex serial converters

BRIDGE:BREAK Flaws Put Thousands of Serial to IP Devices at Risk

Cybersecurity researchers have identified BRIDGE:BREAK, a set of 22 vulnerabilities across Lantronix and Silex serial-to-IP converters, which could allow attackers to hijack devices and tamper with data exchanged by them. The flaws affect as many as eight security weaknesses in Lantronix EDS3000PS and EDS5000 Series and 14 in Silex SD330-AC, with potential…

First seen 2026-04-20T16:18:45.418Z · Last seen 2026-04-21T16:01:47.422Z

ACCORDING to SecurityWeek, Forescout researchers found 20 new vulnerabilities across Lantronix and Silex serial-to-IP converters, collectively tracked as BRIDGE:BREAK, which can be exploited for OS command injection, remote code execution, firmware tampering, denial-of-service and device takeovers.

The researchers showed how an attacker could tamper with data or cause a DoS that would affect healthcare and industrial environments, including disrupted laboratory results, unresponsive surgical lighting controllers, halted infusion pump calibration workflows and interrupted telemetry from environmental sensors. They also warned that extortion groups or state-sponsored actors could deliver weaponised firmware to cause devices to stop responding on the network.

Lantronix and Silex have released patches, and CISA published an advisory describing the Lantronix vulnerabilities, while Silex issued an advisory on its site. The devices are widely deployed across sectors such as industrial, healthcare and utilities, with some vendors reporting millions of units and almost 20,000 internet-exposed systems worldwide, detectable via OSINT; Forescout will publish a report detailing BRIDGE:BREAK on Tuesday, 21 April.

View full article

Article by CyberSIXT

Timeline Coverage

Swipe to explore timeline