RondoDox Botnet Exploits React2Shell Flaw to Hijack IoT Devices and Servers

1 min read
Source: The Hacker News
RondoDox Botnet Exploits React2Shell Flaw to Hijack IoT Devices and Servers
Photo: The Hacker News
TL;DR

Cybersecurity researchers have uncovered a nine-month campaign where the RondoDox botnet exploited the critical React2Shell vulnerability (CVE-2025-55182) to hijack IoT devices and web servers, deploying malware, cryptocurrency miners, and Mirai variants, with the threat still active as of December 2025. Organizations are urged to update vulnerable software, segment IoT devices, and enhance monitoring to prevent infection.

Share this article

Want the full story? Read the original reporting

Read on The Hacker News