logo

RondoDox Botnet: an 'Exploit Shotgun' for Edge Vulns

ID: 0e07df02-d799-5806-be81-f939b3cfdbc5

STIX ID: report--0e07df02-d799-5806-be81-f939b3cfdbc5

Feed Name: Dark Reading

Threat Score
70/100

Date Published: 2025-10-10

Date Updated: 2026-05-05

Author: Nate Nelson, Contributing Writer

...
...

Trend Micro reports a rapidly spreading botnet named RondoDox that uses a 'shotgun' approach to exploit 56 known vulnerabilities—primarily command injection flaws—in unmanaged consumer and edge devices (routers, DVRs, NVRs, CCTV, etc.), doubles as a loader for Mirai and Morte IoT malware, and has expanded widely since May due to the prevalence of unpatched devices and consumer reluctance or inability to apply updates.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.