logo

Attackers Exploiting React2Shell Vulnerability to Attack IT Sectors

ID: 449cb728-885f-508b-8435-c849ac4deeb8

STIX ID: report--449cb728-885f-508b-8435-c849ac4deeb8

Feed Name: cybersecurityNews.com

Threat Score
78/100

Date Published: 2026-01-27

Date Updated: 2026-04-21

Author: Tushar Subhra Dutta

...
...

**Critical React2Shell (CVE-2025-55182) exploit campaigns are actively targeting organizations in insurance, e‑commerce, and IT sectors, delivering miners (XMRig), multiple botnets (Kaiji, RustoBot), backdoors and RATs (EtherRAT, CrossC2).** The vulnerability allows insecure deserialization in React Server Components, enabling rapid weaponization; mitigation requires patching vulnerable packages, rebuilding deployments, and hunting for indicators of successful exploitation and post‑compromise persistence.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.