Thehackernews
RondoDox Botnet Expands by Exploiting Unpatched XWiki RCE Flaw
First seen 2 Dec 2025, 18:33 UTC
•


•72% similarity
•59.2
Share:
Export
Ask AI about this cluster
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
Cluster AI
Ask questions about this threat cluster with AI-powered analysis.
Get Researcher $29.99/moArticle Content
Browse articles
The RondoDox botnet is exploiting the unpatched XWiki remote code execution (RCE) flaw CVE-2025-24893, which has a CVSS score of 9.8. Despite patches released in February 2025, the botnet continues to infect servers, significantly expanding its capabilities and targeting enterprise systems. Recent reports indicate a 650% increase in exploit vectors, with attacks being carried out by multiple threat actors.
ThreatCluster AI