Attackers Exploiting React2Shell Vulnerability to Attack IT Sectors
ID: 449cb728-885f-508b-8435-c849ac4deeb8
STIX ID: report--449cb728-885f-508b-8435-c849ac4deeb8
Feed Name: cybersecurityNews.com
**Critical React2Shell (CVE-2025-55182) exploit campaigns are actively targeting organizations in insurance, e‑commerce, and IT sectors, delivering miners (XMRig), multiple botnets (Kaiji, RustoBot), backdoors and RATs (EtherRAT, CrossC2).** The vulnerability allows insecure deserialization in React Server Components, enabling rapid weaponization; mitigation requires patching vulnerable packages, rebuilding deployments, and hunting for indicators of successful exploitation and post‑compromise persistence.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
