Close Menu

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    HPE OneView Vulnerability Targeted in IoT Botnet Attack Campaign

    January 20, 2026

    A Quiet Google Ads Setting Could Change Your Creative Without Approval

    January 15, 2026

    Apple Partners with Google to Power Next-Generation Siri Using Gemini AI

    January 14, 2026
    Facebook X (Twitter) Instagram LinkedIn
    • About Us
    • Press Release
    Tuesday, January 20
    Facebook X (Twitter) LinkedIn Instagram
    Business Leaders Review: Best Business Magazine and News OnlineBusiness Leaders Review: Best Business Magazine and News Online
    • Home
    • Magazines
    • Featured Leaders
    • Technology
      • Big Data
      • Artificial Intelligence
      • Robotics
      • Cloud
      • Cyber Security
      • Storage
      • IoT
      • Blockchain
      • Data Analytics
    • Industry
      • Banking & Finance
      • Construction
      • Digital Marketing
      • Economy
      • Education
      • EV Industry
      • Food & Beverage
      • Healthcare
      • Legal
      • Manufacturing
      • Mining & Metals
      • Pharmaceutical
    • Testimonials
    • Events
    • Blogs
    • Awards
    • Our Clients
    Business Leaders Review: Best Business Magazine and News OnlineBusiness Leaders Review: Best Business Magazine and News Online
    Home » HPE OneView Vulnerability Targeted in IoT Botnet Attack Campaign
    IoT

    HPE OneView Vulnerability Targeted in IoT Botnet Attack Campaign

    By Business Leaders ReviewJanuary 20, 2026
    HPE OneView Vulnerability Targeted in IoT Botnet Attack Campaign

    Key Highlights

    • A critical vulnerability in HPE OneView is being actively exploited by the RondoDox IoT botnet.
    • Security researchers blocked more than 40,000 attack attempts linked to the campaign.
    • The flaw has been added to CISA’s Known Exploited Vulnerabilities catalogue.

    A newly disclosed vulnerability in Hewlett Packard Enterprise (HPE)’s OneView infrastructure management platform is being exploited in an active botnet campaign targeting Internet of Things (IoT) devices and web servers.

    Security firm Check Point reported blocking more than 40,000 attack attempts linked to the RondoDox botnet, a Linux-based malware strain known for launching distributed denial-of-service (DDoS) attacks and conducting cryptocurrency mining operations.

    The campaign exploits a remote code execution (RCE) flaw tracked as CVE-2025-37164, which affects all HPE OneView versions up to 11.00.

    Global Attack Activity Observed

    Check Point notified the U.S. Cybersecurity and Infrastructure Security Agency (CISA) of the campaign on January 7, which also marked the peak of observed attack activity so far. On the same day, the vulnerability was added to CISA’s Known Exploited Vulnerabilities (KEV) catalogue, underscoring its severity.

    “The majority of observed activity originated from a single Dutch IP address that has been widely reported online as suspicious,” Check Point said. According to the firm, the attacks targeted organizations across multiple industries, with government entities experiencing the highest volume, followed by financial services and industrial manufacturing sectors.

    Geographically, the attacks were distributed worldwide. The United States recorded the highest number of incidents, followed by Australia, France, Germany, and Austria, researchers noted.

    Patch Guidance and Vendor Response

    Following the disclosure, HPE released security patches covering OneView versions 5.20 through 10.20.

    The company cautioned that the hotfix must be reapplied after upgrading appliances from version 6.60.xx to 7.00.00, including any HPE Synergy Composer reinstallations.

    Despite active exploitation reported by security researchers, HPE stated that it has not yet received direct customer reports confirming real-world compromise linked to the vulnerability.

    “This vulnerability can only be exploited if the threat actor has local access to a user’s network, and we encourage our customers to ensure they are using best security practices in their network environment,” HPE said in a statement.

    Growing Risk to Infrastructure Platforms

    The campaign highlights the increasing attractiveness of software-defined infrastructure management platforms as targets for botnets. Tools like HPE OneView often sit at the center of enterprise environments, making them valuable entry points for attackers seeking to deploy malware, disrupt operations, or gain persistent access.

    With the vulnerability now confirmed as actively exploited, organizations running HPE OneView are being urged to apply patches immediately and review network access controls.

    The RondoDox campaign serves as another reminder that IoT-focused botnets continue to evolve, increasingly targeting enterprise infrastructure software alongside traditional endpoints.

    Related Posts

    A Quiet Google Ads Setting Could Change Your Creative Without Approval

    January 15, 2026

    Apple Partners with Google to Power Next-Generation Siri Using Gemini AI

    January 14, 2026

    Joby Aviation Acquires Additional Dayton Facility to Boost Aircraft Output

    January 13, 2026

    EngineAI Introduces T800 Humanoid Robot at CES 2026, Showcasing Next-Gen Embodied Intelligence

    January 7, 2026

    IMCD Strengthens German Food and Beverage Innovation with New Cologne Life Science Hub

    January 7, 2026

    UK Startup WholeSum Raises £730K to Power AI-Driven Qualitative Data Platform

    January 5, 2026
    Top Posts

    HPE OneView Vulnerability Targeted in IoT Botnet Attack Campaign

    January 20, 2026

    A Quiet Google Ads Setting Could Change Your Creative Without Approval

    January 15, 2026

    Apple Partners with Google to Power Next-Generation Siri Using Gemini AI

    January 14, 2026
    Don't Miss

    HPE OneView Vulnerability Targeted in IoT Botnet Attack Campaign

    January 20, 2026

    Key Highlights A newly disclosed vulnerability in Hewlett Packard Enterprise (HPE)’s OneView infrastructure management platform…

    A Quiet Google Ads Setting Could Change Your Creative Without Approval

    January 15, 2026

    Apple Partners with Google to Power Next-Generation Siri Using Gemini AI

    January 14, 2026

    Joby Aviation Acquires Additional Dayton Facility to Boost Aircraft Output

    January 13, 2026
    Stay In Touch
    • Facebook
    • Twitter
    • Instagram
    • LinkedIn
    About Us
    About Us

    Business Leaders Review is a global print and digital monthly and yearly magazine, which provides a platform to showcase business/tech leaders and their company’s profile from various sectors. Our aim is to publish the c-suite leaders stories.

    We are helping the leaders & readers to showcase their ideas and innovations to the business and tech world in this current market situation along with their awards and achievements. Doing so we hope to leverage thousands of businesses and personnel around the globe.

    Most Popular

    HPE OneView Vulnerability Targeted in IoT Botnet Attack Campaign

    A Quiet Google Ads Setting Could Change Your Creative Without Approval

    Apple Partners with Google to Power Next-Generation Siri Using Gemini AI

    Latest Magazines
    Facebook X (Twitter) LinkedIn Instagram
    • Home
    • Our Clients
    • TECHNLOGY NEWS
    • Industry News
    • Contact Us
    • Privacy Policy
    • Reprints and Permissions
    © 2021-2026 Business Leaders Review LLC | All Rights Reserved | Empowering Communication Globally

    Type above and press Enter to search. Press Esc to cancel.