logo

The Shotgun Approach: BitSight Exposes RondoDox Botnet’s Rapid-Fire 174-Exploit Arsenal Targeting IoT

ID: 5026c5e1-981d-56cf-8ff1-100593be3e05

STIX ID: report--5026c5e1-981d-56cf-8ff1-100593be3e05

Feed Name: securityonline.info

Threat Score
70/100

Date Published: 2026-03-16

Date Updated: 2026-04-23

Author: Ddos

...
...

BitSight researcher João Godinho exposes RondoDox, an IoT-focused botnet active since May 2025 that uses a “shotgun approach” with an unusually large arsenal (174 distinct exploits) to compromise internet-exposed devices, peaked at ~15,000 daily exploitation attempts, adapts quickly to new vulnerabilities (sometimes exploiting before CVE publication), stores payloads on compromised residential hosts, and primarily delivers DoS-capable malware while attempting to remove competing malware.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.