Threat Intelligence News from LevelBlue SpiderLabs January 2026
ID: 4abb2cd4-74cf-5361-abc9-20c1b036edde
STIX ID: report--4abb2cd4-74cf-5361-abc9-20c1b036edde
Feed Name: LevelBlue SpiderLabs Blog
LevelBlue SpiderLabs' January 2026 update details two high-risk, actively exploited vulnerabilities—MongoBleed (CVE-2025-14847) and React2Shell (CVE-2025-55182)—including their CVSS ratings, scope (hundreds of thousands of internet-facing MongoDB servers; widely weaponized React Server Component packages), observed exploitation activity deploying malware families and miners, recommended patches/mitigations, detection indicators (IOCs, telemetry spikes, artefacts), and updates to detection capabilities and OTX pulses.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
