React2Shell: 766 server compromessi in 24 ore, è corsa alle patch
📌 Link all'articolo : www.redhotcyber.com/post/react2s...
A cura di Bajram Zeqiri
#redhotcyber #news #ciberattacchi #cybersecurity #hacking #malware #vulnerabilita #react2shell #cve202555182
~Paloalto~
Actors exploit K8s flaws & React2Shell to steal tokens and escalate cloud privileges.
-
IOCs: 104. 238. 149. 198, 45. 76. 155. 14, 23. 235. 188. 3
-
#CVE202555182 #Kubernetes #ThreatIntel
~Talos~
UAT-10608 exploits React2Shell (CVE-2025-55182) in Next.js apps to deploy NEXUS Listener for mass credential theft.
-
IOCs: 144. 172. 102. 88, 172. 86. 127. 128, 144. 172. 112. 136
-
#CVE202555182 #Malware #ThreatIntel
This month's project, we threw React2Shell (CVE-2025-55182) in our GOAD instance and then executed Sliver C2 payload using Early Bird technique!
Part 1 out now.
hexxedbitheadz.com/react2shell-...
#React2Shell #CVE202555182 #GOAD #ActiveDirectory #Cybersecurity #Hacking
Was sich hinter der hochbrisanten und noch aktiven Schwachstelle React2Shell verbirgt
@CheckPointSW #CVE202555182 #Potatosecurity #Potatosicherheit #React2Shell #Schwachstelle #Sicherheitslücke #WebApplicationFirewall
Was sich hinter der hochbrisanten und noch aktiven Schwachstelle React2Shell verbirgt
@CheckPointSW #CVE202555182 #Cybersecurity #Cybersicherheit #React2Shell #Schwachstelle #Sicherheitslücke #WebApplicationFirewall
#React2Shell exploitation spreads as #Microsoft counts hundreds of mashed machines
www.theregister.com/2025/12/18/r...
Says attackers have already compromised "several hundred machines across a diverse set of organizations".
#PotatoSecurity #INfoSec #Vulnerability #CVE202555182 #ThreatIntelligence
#React2Shell exploitation spreads as #Microsoft counts hundreds of hacked machines
www.theregister.com/2025/12/18/r...
Says attackers have already compromised "several hundred machines across a diverse set of organizations".
#CyberSecurity #INfoSec #Vulnerability #CVE202555182 #ThreatIntelligence
Update: Analyzing React2Shell payloads. Full breakdown from @hrbrmstr 👉 www.greynoise.io/blog/react2shell-payload...
#React2Shell #Nextjs #CVE202555182
Update: Analyzing React2Shell payloads. Full breakdown from @hrbrmstr.dev 👇
#React2Shell #Nextjs #CVE202555182
~Microsoft~
Critical pre-auth RCE in React Server Components is actively exploited to deploy coin miners and RATs; patch immediately.
-
IOCs: 194. 69. 203. 32, 162. 215. 170. 26, 216. 158. 232. 43
-
#CVE202555182 #RCE #React #ThreatIntel
🚨 In this week’s newsletter, we revisit React2Shell (CVE-2025-55182) as exploitation surged from hundreds to over 10K daily attackers.
Read the full analysis and protect your systems 👉 www.crowdsec.net/vulntracking...
#React2Shell #CVE202555182 #threatalert #cybersecurity
Critical Alert: React2Shell (CVE-2025-55182) is under active exploitation by state-sponsored actors. Immediate patching required to prevent unauthenticated RCE. #CyberSecurity #React2Shell #CVE202555182 Link: thedailytechfeed.com/react2shell-...
~Mandiant~
Multiple threat actors are exploiting the critical React2Shell RCE to deploy backdoors, tunnelers, and cryptominers.
-
IOCs: reactcdn. windowserrorapis. com, 82. 163. 22. 139, 45. 76. 155. 14
-
#CVE202555182 #React #ThreatIntel
Just in: Watch #React2Shell exploitation unfold over time in the map below (geo of source IPs attempting to exploit CVE-2025-55182).
#GreyNoise #ThreatIntel #CVE202555182 #Nextjs #Potatosecurity
Just in: Watch #React2Shell exploitation unfold over time in the map below (geo of source IPs attempting to exploit CVE-2025-55182).
#GreyNoise #ThreatIntel #CVE202555182 #Nextjs #Cybersecurity
Just in: Watch #React2Shell exploitation unfold over time in the map below (geo of source IPs attempting to exploit CVE-2025-55182).
#GreyNoise #ThreatIntel #CVE202555182 #Nextjs #Cybersecurity
Graphic summarizing five React2Shell attacker profiles: Mass Scanners, VPN/Proxy Users, Cryptomining Operators, Malware Distribution Infrastructure, and Reconnaissance Specialists. Each group shows distinct characteristics, JA4+ signatures, and assessments ranging from benign scanning to organized cybercrime activity. GreyNoise notes customers receive full signatures in their intelligence brief.
👀 React2Shell attacker profiles fresh from GreyNoise telemetry: info.greynoise.io/hubfs/PDFs-S..., don't miss the latest contribution from GreyNoise Labs on React2Shell: www.labs.greynoise.io/grimoire/202...
#React2Shell #Nextjs #CVE202555182 #CVE #GreyNoise
Critical Alert: React2Shell (CVE-2025-55182) vulnerability under active exploitation. Immediate patching required to prevent unauthenticated RCE. #CyberSecurity #React2Shell #CVE202555182 Link: thedailytechfeed.com/critical-rea...
📣 New Podcast! "Chinese Hackers & the React2Shell Crisis" on @Spreaker #cve_2025_55182 #cve202555182 #cybersecurity #earthlamia #jackpotpanda #nextjs #react2shell #upwardlymobile #websecurity
~Zscaler~
A critical RCE vulnerability (CVE-2025-55182, CVSS 10.0) in React Server Components allows unauthenticated code execution.
-
IOCs: CVE-2025-55182
-
#CVE202555182 #RCE #React2Shell #ThreatIntel
#React2Shell flaw #exploited to breach 30 orgs, 77k IP addresses vulnerable #CVE202555182
www.bleepingcomputer.com/news/securit...
~Trendmicro~
A critical pre-auth RCE (CVSS 10.0) vulnerability, CVE-2025-55182, affects React Server Components and frameworks like Next.js; patch immediately.
-
IOCs: CVE-2025-55182
-
#CVE202555182 #ReactJS #ThreatIntel
~Cisa~
CISA warns CVE-2025-55182, a Meta React Server Components RCE vulnerability, is being actively exploited.
-
IOCs: CVE-2025-55182
-
#CVE202555182 #RCE #ThreatIntel
~Socket~
A critical unauthenticated RCE vulnerability (CVSS 10.0) affects React Server Components, requiring immediate patching.
-
IOCs: CVE-2025-55182
-
#CVE202555182 #ReactJS #ThreatIntel
text message: "i thought for sure they were gonna hack up some shitty nextjs dashboard"
this week's conversations. unintentionally topical
#cve202555182
Reactのサーバーコンポーネント(RSC)に脆弱性(CVE-2025-55182)が発見されたらしいので記事を書きました。
ReactにCVSS10の脆弱性、サーバーサイドでのデシリアライズに欠陥が存在し攻撃者はHTTPリクエストのみで任意のコードを実行可能 - osumiakari.jp
www.osumiakari.jp/articles/202... #news #ニュース #React #ReactJS #Nextjs #React2Shell #CVE202555182
winbuzzer.com/2025/12/03/s...
Severe React Server Components Flaw Exposes Millions of Apps and Websites
#Security #Cybersecurity #React #NextJS #RCE #CloudSecurity #Vulnerability #DevOps #WebDev #Meta #Vercel #CVE202555182 #SoftwareEngineering