Advanced CIA firmware has been infecting Wi-Fi routers for years.

https://quitter.no/url/1258918
@antonlopez I've been reading this and it sounds like they need to get within physical proximity with a laptop to be able to implant the router.
@bob @antonlopez btw there is also the #TR069 remote administration method, enabled on many broadband routers. May be even hidden in the UI.
@bob @antonlopez →whoever has access to the #TR069 remote access agent (ISP, …) can upload new firmware. No physical access necessary.