Close Menu

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    LegalZoom Integrates Attorney Services Into Claude to Challenge the Billable Hour

    February 25, 2026

    proteanTecs and Gubo Technologies Partner to Advance AI-Driven Semiconductor Analytics

    February 24, 2026

    How to Build Authority in Competitive B2B Markets: A Strategic Leadership Guide

    February 23, 2026
    Facebook X (Twitter) Instagram LinkedIn
    • About Us
    • Press Release
    Sunday, March 1
    Facebook X (Twitter) LinkedIn Instagram
    Business Leaders Review: Best Business Magazine and News OnlineBusiness Leaders Review: Best Business Magazine and News Online
    • Home
    • Magazines
    • Featured Leaders
    • Technology
      • Big Data
      • Artificial Intelligence
      • Robotics
      • Cloud
      • Cyber Security
      • Storage
      • IoT
      • Blockchain
      • Data Analytics
    • Industry
      • Banking & Finance
      • Construction
      • Digital Marketing
      • Economy
      • Education
      • EV Industry
      • Food & Beverage
      • Healthcare
      • Legal
      • Manufacturing
      • Mining & Metals
      • Pharmaceutical
    • Testimonials
    • Events
    • Blogs
    • Awards
    • Our Clients
    Business Leaders Review: Best Business Magazine and News OnlineBusiness Leaders Review: Best Business Magazine and News Online
    Home » HPE OneView Vulnerability Targeted in IoT Botnet Attack Campaign
    IoT

    HPE OneView Vulnerability Targeted in IoT Botnet Attack Campaign

    By Business Leaders ReviewJanuary 20, 2026
    HPE OneView Vulnerability Targeted in IoT Botnet Attack Campaign

    Key Highlights

    • A critical vulnerability in HPE OneView is being actively exploited by the RondoDox IoT botnet.
    • Security researchers blocked more than 40,000 attack attempts linked to the campaign.
    • The flaw has been added to CISA’s Known Exploited Vulnerabilities catalogue.

    A newly disclosed vulnerability in Hewlett Packard Enterprise (HPE)’s OneView infrastructure management platform is being exploited in an active botnet campaign targeting Internet of Things (IoT) devices and web servers.

    Security firm Check Point reported blocking more than 40,000 attack attempts linked to the RondoDox botnet, a Linux-based malware strain known for launching distributed denial-of-service (DDoS) attacks and conducting cryptocurrency mining operations.

    The campaign exploits a remote code execution (RCE) flaw tracked as CVE-2025-37164, which affects all HPE OneView versions up to 11.00.

    Global Attack Activity Observed

    Check Point notified the U.S. Cybersecurity and Infrastructure Security Agency (CISA) of the campaign on January 7, which also marked the peak of observed attack activity so far. On the same day, the vulnerability was added to CISA’s Known Exploited Vulnerabilities (KEV) catalogue, underscoring its severity.

    “The majority of observed activity originated from a single Dutch IP address that has been widely reported online as suspicious,” Check Point said. According to the firm, the attacks targeted organizations across multiple industries, with government entities experiencing the highest volume, followed by financial services and industrial manufacturing sectors.

    Geographically, the attacks were distributed worldwide. The United States recorded the highest number of incidents, followed by Australia, France, Germany, and Austria, researchers noted.

    Patch Guidance and Vendor Response

    Following the disclosure, HPE released security patches covering OneView versions 5.20 through 10.20.

    The company cautioned that the hotfix must be reapplied after upgrading appliances from version 6.60.xx to 7.00.00, including any HPE Synergy Composer reinstallations.

    Despite active exploitation reported by security researchers, HPE stated that it has not yet received direct customer reports confirming real-world compromise linked to the vulnerability.

    “This vulnerability can only be exploited if the threat actor has local access to a user’s network, and we encourage our customers to ensure they are using best security practices in their network environment,” HPE said in a statement.

    Growing Risk to Infrastructure Platforms

    The campaign highlights the increasing attractiveness of software-defined infrastructure management platforms as targets for botnets. Tools like HPE OneView often sit at the center of enterprise environments, making them valuable entry points for attackers seeking to deploy malware, disrupt operations, or gain persistent access.

    With the vulnerability now confirmed as actively exploited, organizations running HPE OneView are being urged to apply patches immediately and review network access controls.

    The RondoDox campaign serves as another reminder that IoT-focused botnets continue to evolve, increasingly targeting enterprise infrastructure software alongside traditional endpoints.

    Related Posts

    LegalZoom Integrates Attorney Services Into Claude to Challenge the Billable Hour

    February 25, 2026

    proteanTecs and Gubo Technologies Partner to Advance AI-Driven Semiconductor Analytics

    February 24, 2026

    Mining Stocks Lead TSX Venture 50 as Investors Rotate Into Resources

    February 19, 2026

    Data-Only Extortion Surges as Ransomware Gangs Shift Tactics for Higher Profits

    February 18, 2026

    Tic Tac® and Dr Pepper® Unveil Limited-Edition 23-Flavor Mint Collaboration

    February 17, 2026

    REI Network Partners with Ads3 to Strengthen Web3 Advertising and Network Growth

    February 12, 2026
    Top Posts

    LegalZoom Integrates Attorney Services Into Claude to Challenge the Billable Hour

    February 25, 2026

    proteanTecs and Gubo Technologies Partner to Advance AI-Driven Semiconductor Analytics

    February 24, 2026

    Mining Stocks Lead TSX Venture 50 as Investors Rotate Into Resources

    February 19, 2026
    Don't Miss

    LegalZoom Integrates Attorney Services Into Claude to Challenge the Billable Hour

    February 25, 2026

    Key Highlights LegalZoom.com, Inc. (Nasdaq: LZ) has announced the launch of its LegalZoom Connector, integrating…

    proteanTecs and Gubo Technologies Partner to Advance AI-Driven Semiconductor Analytics

    February 24, 2026

    How to Build Authority in Competitive B2B Markets: A Strategic Leadership Guide

    February 23, 2026

    Mining Stocks Lead TSX Venture 50 as Investors Rotate Into Resources

    February 19, 2026
    Stay In Touch
    • Facebook
    • Twitter
    • Instagram
    • LinkedIn
    About Us
    About Us

    Business Leaders Review is a global print and digital monthly and yearly magazine, which provides a platform to showcase business/tech leaders and their company’s profile from various sectors. Our aim is to publish the c-suite leaders stories.

    We are helping the leaders & readers to showcase their ideas and innovations to the business and tech world in this current market situation along with their awards and achievements. Doing so we hope to leverage thousands of businesses and personnel around the globe.

    Most Popular

    LegalZoom Integrates Attorney Services Into Claude to Challenge the Billable Hour

    proteanTecs and Gubo Technologies Partner to Advance AI-Driven Semiconductor Analytics

    Mining Stocks Lead TSX Venture 50 as Investors Rotate Into Resources

    Latest Magazines
    Facebook X (Twitter) LinkedIn Instagram
    • Home
    • Our Clients
    • TECHNLOGY NEWS
    • Industry News
    • Contact Us
    • Privacy Policy
    • Reprints and Permissions
    © 2021-2026 Business Leaders Review LLC | All Rights Reserved | Empowering Communication Globally

    Type above and press Enter to search. Press Esc to cancel.