logo

RondoDox Botnet Exploits Critical 2018 Vulnerability to Hijack ASUS Routers

ID: 01efec3d-8bf4-5020-be66-f0fdeef3b39e

STIX ID: report--01efec3d-8bf4-5020-be66-f0fdeef3b39e

Feed Name: HackRead

Threat Score
78/100

Date Published: 2026-05-23

Date Updated: 2026-06-04

Author: Deeba Ahmed

...
...

VulnCheck discovered that the RondoDox botnet is exploiting a critical 2018 ASUS router vulnerability (CVE-2018-5999, CVSS 9.8) by toggling the ateCommand_flag to open the router's infosvr and allow unauthenticated configuration changes; researchers confirmed they could change admin credentials and observed exploitation beginning May 17, enabling device takeover and recruitment for DDoS campaigns.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.