Florida’s AG Just Exposed What Your Home Router Has Been Sending to Beijing

Oct 10, 2026

Chinese state-sponsored hackers were already inside American homes before anyone said a word.

Now a 59-page lawsuit reveals exactly what the company selling you "100% protection" knew and when they knew it.

Florida's top law enforcement officer just found something inside your router that TP-Link never wanted you to see.

TP-Link Told You It Was Safe While Beijing Walked Right Through

The lawsuit, filed in Polk County's 10th Judicial Circuit, lays out a fraud scheme hiding in plain sight.

TP-Link sold Florida consumers routers with a HomeShield security service promising 100% protection and coverage of every security scenario.

That was a lie.

James Uthmeier – Ron DeSantis' former chief of staff and Florida's current AG – didn't mince words: "TP-Link sold Floridians the digital front door to their home network while misrepresenting how secure it was, how separated the company was from China, and what could happen to their data."

Many of those compromised models cannot update themselves automatically.

TP-Link has already stopped supporting them entirely.

Your router is sitting there right now – unpatched, unprotected, and potentially reporting home to Beijing.

The Vietnam Fiction That Covered for Shenzhen

It gets worse.

TP-Link told Americans the company had cut ties with China and that its products were assembled in Vietnam.

Uthmeier called that exactly what it is: fiction.

Less than 1% of the components in that Vietnam plant actually come from Vietnam – and research and manufacturing remain rooted in China.

This isn't a manufacturing quirk.

It's a cover story designed to put "Made in Vietnam" on the box while the guts of the device flow straight from Shenzhen – and while Chinese law still requires TP-Link to hand over user data to Beijing on demand.

The U.S. Department of Commerce opened a national security investigation into TP-Link in 2024 over exactly these concerns – and Republican lawmakers had already urged a federal ban on sales months before that.

What Chinese Hackers Actually Did With Your Router

Microsoft exposed it in their own research: a China-linked hacking operation called CovertNetwork-1658 used compromised TP-Link routers as the backbone of a credential-theft campaign targeting American users.

That's not theoretical.

That's your passwords, your banking logins, your emails – funneled through a device sitting on your kitchen counter.

China's hacking machine runs on exactly this playbook: infiltrate cheap consumer devices, build a botnet of hundreds of thousands of compromised routers, then use that army of hijacked hardware to tunnel into American critical infrastructure.

CISA – the federal cybersecurity agency – currently lists half a dozen known TP-Link vulnerabilities being actively exploited in attacks.

Not historical vulnerabilities.

Current ones.

Flax Typhoon ran a botnet of over 260,000 infected devices in 2024 alone – all hijacked for espionage against American targets.

TP-Link holds roughly 65% of the U.S. router market.

That's not a footnote.

That's how many American living rooms Beijing has potential access to right now.

Uthmeier Is Building a Pattern the Rest of the Country Should Notice

This lawsuit doesn't exist in isolation.

Uthmeier has been systematically targeting tech companies that prey on Florida families – suing Netflix last month for secretly collecting children's viewing data, suing TikTok for deceiving parents about its platform, and suing OpenAI and Sam Altman after a ChatGPT user carried out a mass shooting at Florida State University.

The TP-Link suit is the biggest of them all because the exposure is universal.

Netflix knows what your kid watches.

TikTok feeds them content.

TP-Link hands Beijing the keys to your entire home network – every device, every password, every conversation happening over your Wi-Fi.

Uthmeier is seeking an injunction to halt the deceptive practices, full restitution for Florida consumers, and maximum penalties under Florida law.

"We will not allow families to be misled into handing their personal data to the Chinese Communist Party," he said.

Texas AG Ken Paxton has his own TP-Link lawsuit moving through state court.

Florida just joined the fight.

The question is why the federal government – which opened its own investigation two years ago – still hasn't pulled TP-Link off American store shelves.

While federal agencies debate, Chinese hackers are already inside.


Sources:

  • Drew Dixon, "James Uthmeier sues TP-Link, says router maker hid China ties and security risks," Florida Politics, October 6, 2026.
  • Office of Florida Attorney General James Uthmeier, TP-Link Systems complaint, myfloridalegal.com, October 2026.
  • Bloomberg Law, "Texas Sues TP-Link Systems Over Chinese Hacking Connection," February 17, 2026.
  • BleepingComputer, "Texas sues TP-Link over Chinese hacking risks, user deception," 2026.
  • WebProNews, "China's Router Armies: How Beijing's Hackers Weaponize Everyday Devices for Global Espionage," 2025.

Latest Posts: