North Korean Hackers Exploit React2Shell Vulnerability in the Wild to Deploy EtherRAT

A novel, highly sophisticated malware strain targeting vulnerable React Server Components, signaling a significant evolution in how state-sponsored threat actors are exploiting the critical React2Shell vulnerability disclosed just days earlier. On December 5, 2025, just two days after the disclosure of the maximum-severity vulnerability CVE-2025-55182 (dubbed “React2Shell”), the Sysdig Threat Research Team (TRT) discovered a […]

The post North Korean Hackers Exploit React2Shell Vulnerability in the Wild to Deploy EtherRAT appeared first on Cyber Security News.

This article has been indexed from Cyber Security News

Read the original article: