RondoDox botnet targets routers, IoT devices exploiting 56 vulnerabilities.
A recent campaign by the RondoDox botnet has exploited over 56 vulnerabilities across a range of devices, including routers from major manufacturers like Cisco, D-Link, and Netgear, as well as CCTV systems and industrial routers. This operation, characterized as a rapid “smash-and-grab,” peaked from September 22-24 and employed a loader-as-a-service model bundling RondoDox with Mirai and Morte malware, enabling remote control and DDoS attacks. Security experts from Trend Micro’s Zero Day Initiative have advised users to implement vendor mitigations and updates promptly to safeguard against these threats. The incident underscores the increasing vulnerability of IoT devices and emphasizes the critical need for enhanced cybersecurity measures in both personal and industrial contexts.