The Shotgun Approach: BitSight Exposes RondoDox Botnet’s Rapid-Fire 174-Exploit Arsenal Targeting IoT
ID: 5026c5e1-981d-56cf-8ff1-100593be3e05
STIX ID: report--5026c5e1-981d-56cf-8ff1-100593be3e05
Feed Name: securityonline.info
BitSight researcher João Godinho exposes RondoDox, an IoT-focused botnet active since May 2025 that uses a “shotgun approach” with an unusually large arsenal (174 distinct exploits) to compromise internet-exposed devices, peaked at ~15,000 daily exploitation attempts, adapts quickly to new vulnerabilities (sometimes exploiting before CVE publication), stores payloads on compromised residential hosts, and primarily delivers DoS-capable malware while attempting to remove competing malware.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
