Welcome to your daily cybersecurity podcast.
π°οΈ RoningLoader analysis: new research unveils the stealthy capabilities of RoningLoader, a modular malware loader designed for evasion, payload staging, and long-term persistence across compromised environments.
π Gh0st RAT impersonation campaigns: recent investigations reveal large-scale social-engineering operations delivering Gh0st RAT through impersonated organizations, using spoofed identities and fraudulent communication channels to compromise victims.
π Online radicalisation via gaming platforms: Europol and partner nations report coordinated action against extremist groups exploiting gaming ecosystems for recruitment, covert communication, and distribution of illicit content.
π’ IBM AIX/VIOS β Critical vulnerability: a newly disclosed high-severity flaw impacts IBM AIX and VIOS systems, enabling attackers to exploit privilege-escalation vectors. Patch guidance has been issued and should be applied promptly.
π§ Rondodox botnet expansion: threat actors are actively weaponizing an unpatched XWiki RCE vulnerability, expanding the Rondodox botnet with automated exploitation routines targeting internet-facing systems.
π± Rust adoption improves Android memory-safety posture: new assessments highlight significant reductions in memory-corruption issues within Android components rewritten in Rust, reinforcing the long-term shift toward safer systems languages.
ποΈ Holiday cyber scams warning: national security agencies urge increased vigilance amid a rise in fraudulent shopping campaigns, fake storefronts, phishing operations, and payment-data harvesting schemes targeting consumers ahead of seasonal sales.
β‘οΈ Donβt think β patch! π
π Sources:
π RoningLoader β Elastic Security Labs: https://www.elastic.co/security-labs/roningloader
π Gh0st RAT Impersonation Campaigns β Unit42: https://unit42.paloaltonetworks.com/impersonation-campaigns-deliver-gh0st-rat/
π Online Radicalisation on Gaming Platforms β Europol: https://www.europol.europa.eu/media-press/newsroom/news/europol-and-partner-countries-combat-online-radicalisation-gaming-platforms
π IBM AIX/VIOS CVE-2025-36250: https://cyberveille.esante.gouv.fr/alertes/ibm-aixvios-cve-2025-36250-2025-11-14
π Rondodox Botnet Expands via XWiki RCE β Security Affairs: https://securityaffairs.com/184702/malware/rondodox-expands-botnet-by-exploiting-xwiki-rce-bug-left-unpatched-since-february-2025.html
π Rust Adoption & Android Memory Safety β The Hacker News: https://thehackernews.com/2025/11/rust-adoption-drives-android-memory.html
π Holiday Shopping Cyber-Scams β NCSC: https://www.ncsc.gov.uk/news/stay-alert-to-holiday-shopping-cyber-scams
π Share your feedback:
π§ radiocsirt@gmail.com
π www.radiocsirt.org
π° radiocsirtintl.substack.com
#CyberSecurity #Malware #Gh0stRAT #Europol #IBM #Rondodox #Rust #Android #NCSC #RadioCSIRT π§