The Rise of Vibecoding: AI-Generated Malware Exploits React2Shell
ID: 0cff821b-b194-51db-992c-21e60d96023d
STIX ID: report--0cff821b-b194-51db-992c-21e60d96023d
Feed Name: securityonline.info
Threat Score
Darktrace observed an AI-generated malware campaign exploiting the React2Shell vulnerability (CVE-2025-55182) by spawning a deceptively named container on an exposed Docker daemon to install tools and run a Python payload that deployed XMRig to mine Monero; the attacker’s use of a public mining pool revealed earnings and demonstrated how AI can enable fast, low-skill exploitation.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
