Your Cybersecurity Update for Monday, November 17, 2025 (Ep.489)

RadioCSIRT English Edition
RadioCSIRT English Edition
Your Cybersecurity Update for Monday, November 17, 2025 (Ep.489)
Loading
/

Welcome to your daily cybersecurity podcast.

πŸ›°οΈ RoningLoader analysis: new research unveils the stealthy capabilities of RoningLoader, a modular malware loader designed for evasion, payload staging, and long-term persistence across compromised environments.

πŸ›‘ Gh0st RAT impersonation campaigns: recent investigations reveal large-scale social-engineering operations delivering Gh0st RAT through impersonated organizations, using spoofed identities and fraudulent communication channels to compromise victims.

🎭 Online radicalisation via gaming platforms: Europol and partner nations report coordinated action against extremist groups exploiting gaming ecosystems for recruitment, covert communication, and distribution of illicit content.

🏒 IBM AIX/VIOS – Critical vulnerability: a newly disclosed high-severity flaw impacts IBM AIX and VIOS systems, enabling attackers to exploit privilege-escalation vectors. Patch guidance has been issued and should be applied promptly.

🐧 Rondodox botnet expansion: threat actors are actively weaponizing an unpatched XWiki RCE vulnerability, expanding the Rondodox botnet with automated exploitation routines targeting internet-facing systems.

πŸ“± Rust adoption improves Android memory-safety posture: new assessments highlight significant reductions in memory-corruption issues within Android components rewritten in Rust, reinforcing the long-term shift toward safer systems languages.

πŸ›οΈ Holiday cyber scams warning: national security agencies urge increased vigilance amid a rise in fraudulent shopping campaigns, fake storefronts, phishing operations, and payment-data harvesting schemes targeting consumers ahead of seasonal sales.

⚑️ Don’t think β€” patch! πŸš€

πŸ“š Sources:
πŸ”— RoningLoader – Elastic Security Labs: https://www.elastic.co/security-labs/roningloader
πŸ”— Gh0st RAT Impersonation Campaigns – Unit42: https://unit42.paloaltonetworks.com/impersonation-campaigns-deliver-gh0st-rat/
πŸ”— Online Radicalisation on Gaming Platforms – Europol: https://www.europol.europa.eu/media-press/newsroom/news/europol-and-partner-countries-combat-online-radicalisation-gaming-platforms
πŸ”— IBM AIX/VIOS CVE-2025-36250: https://cyberveille.esante.gouv.fr/alertes/ibm-aixvios-cve-2025-36250-2025-11-14
πŸ”— Rondodox Botnet Expands via XWiki RCE – Security Affairs: https://securityaffairs.com/184702/malware/rondodox-expands-botnet-by-exploiting-xwiki-rce-bug-left-unpatched-since-february-2025.html
πŸ”— Rust Adoption & Android Memory Safety – The Hacker News: https://thehackernews.com/2025/11/rust-adoption-drives-android-memory.html
πŸ”— Holiday Shopping Cyber-Scams – NCSC: https://www.ncsc.gov.uk/news/stay-alert-to-holiday-shopping-cyber-scams

πŸ“ž Share your feedback:
πŸ“§ radiocsirt@gmail.com
🌐 www.radiocsirt.org
πŸ“° radiocsirtintl.substack.com

#CyberSecurity #Malware #Gh0stRAT #Europol #IBM #Rondodox #Rust #Android #NCSC #RadioCSIRT 🎧