Close Menu

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    Apple MacBook Neo Officially Launches in Malaysia From RM2,499

    New free-to-play action-adventure RPG launches on Steam with 2,300 player peak and over 100 characters

    Hisense U7SG Mini LED TVs launch with 330 Hz gaming mode, 3000 nits brightness and sizes up to 116 inches

    Facebook X (Twitter) Instagram
    • Artificial Intelligence
    • Business Technology
    • Cryptocurrency
    • Gadgets
    • Gaming
    • Health
    • Software and Apps
    • Technology
    Facebook X (Twitter) Instagram Pinterest Vimeo
    Tech AI Verse
    • Home
    • Artificial Intelligence

      What the polls say about how Americans are using AI

      February 27, 2026

      Tensions between the Pentagon and AI giant Anthropic reach a boiling point

      February 21, 2026

      Read the extended transcript: President Donald Trump interviewed by ‘NBC Nightly News’ anchor Tom Llamas

      February 6, 2026

      Stocks and bitcoin sink as investors dump software company shares

      February 4, 2026

      AI, crypto and Trump super PACs stash millions to spend on the midterms

      February 2, 2026
    • Business

      Google releases Gemini 3.1 Flash Lite at 1/8th the cost of Pro

      March 4, 2026

      Huawei Watch GT Series

      March 4, 2026

      Weighing up the enterprise risks of neocloud providers

      March 3, 2026

      A stolen Gemini API key turned a $180 bill into $82,000 in two days

      March 3, 2026

      These ultra-budget laptops “include” 1.2TB storage, but most of it is OneDrive trial space

      March 1, 2026
    • Crypto

      Banks Respond to Kraken’s Federal Reserve Access as Trump Sides with Crypto

      March 4, 2026

      Hyperliquid and DEXs Break the Top 10 — Is the CEX Era Ending?

      March 4, 2026

      Consensus Hong Kong 2026: The Institutional Turn 

      March 4, 2026

      New Crypto Mutuum Finance (MUTM) Reports V1 Protocol Progress as Roadmap Enters Phase 3

      March 4, 2026

      Bitcoin Short Sellers Caught Off Guard in New White House Move

      March 4, 2026
    • Technology

      New free-to-play action-adventure RPG launches on Steam with 2,300 player peak and over 100 characters

      March 5, 2026

      Hisense U7SG Mini LED TVs launch with 330 Hz gaming mode, 3000 nits brightness and sizes up to 116 inches

      March 5, 2026

      Yahoo pauses IAB membership amid a series of quiet cost-saving measures

      March 5, 2026

      Target looks to e-commerce, advertising investments to help grow the business

      March 5, 2026

      Media Briefing: As AI search grows, a cottage industry of GEO vendors is booming

      March 5, 2026
    • Others
      • Gadgets
      • Gaming
      • Health
      • Software and Apps
    Check BMI
    Tech AI Verse
    You are at:Home»Technology»Critical React2Shell flaw actively exploited in China-linked attacks
    Technology

    Critical React2Shell flaw actively exploited in China-linked attacks

    TechAiVerseBy TechAiVerseDecember 6, 2025No Comments3 Mins Read4 Views
    Facebook Twitter Pinterest Telegram LinkedIn Tumblr Email Reddit
    Critical React2Shell flaw actively exploited in China-linked attacks
    Share
    Facebook Twitter LinkedIn Pinterest WhatsApp Email

    Critical React2Shell flaw actively exploited in China-linked attacks

    Multiple China-linked threat actors began exploiting the React2Shell vulnerability (CVE-2025-55182) affecting React and Next.js just hours after the max-severity issue was disclosed.

    React2Shell is an insecure deserialization vulnerability in the React Server Components (RSC) ‘Flight’ protocol. Exploiting it does not require authentication and allows remote execution of JavaScript code in the server’s context.

    For the Next.js framework, there is the identifier CVE-2025-66478, but the tracking number was rejected in the National Vulnerability Database’s CVE list as a duplicate of CVE-2025-55182.

    The security issue is easy to leverage, and several proof-of-concept (PoC) exploits have already been published, increasing the risk of related threat activity.

    The vulnerability spans several versions of the widely used library, potentially exposing thousands of dependent projects. Wiz researchers say that 39% of the cloud environments they can observe are susceptible to React2Shell attacks.

    React and Next.js have released security updates, but the issue is trivially exploitable without authentication and in the default configuration.

    React2Shell attacks underway

    A report from Amazon Web Services (AWS) warns that the Earth Lamia and Jackpot Panda threat actors linked to China started to exploit React2Shell almost immediately after the public disclosure.

    “Within hours of the public disclosure of CVE-2025-55182 (React2Shell) on December 3, 2025, Amazon threat intelligence teams observed active exploitation attempts by multiple China state-nexus threat groups, including Earth Lamia and Jackpot Panda,” reads the AWS report.

    AWS’s honeypots also caught activity not attributed to any known clusters, but which still originates from China-based infrastructure.

    Many of the attacking clusters share the same anonymization infrastructure, which further complicates individualized tracking and specific attribution.

    Regarding the two identified threat groups, Earth Lamia focuses on exploiting web application vulnerabilities.

    Typical targets include entities in the financial services, logistics, retail, IT companies, universities, and government sectors across Latin America, the Middle East, and Southeast Asia.

    Jackpot Panda targets are usually located in East and Southeast Asia, and its attacks are aimed at collecting intelligence on corruption and domestic security.

    PoCs now available

    Lachlan Davidson, the researcher who discovered and reported React2Shell, warned about fake exploits circulating online. However, exploits confirmed as valid by Rapid7 researcher Stephen Fewer and Elastic Security’s Joe Desimone have appeared on GitHub.

    The attacks that AWS observed leverage a mix of public exploits, including broken ones, along with iterative manual testing and real-time troubleshooting against targeted environments.

    The observed activity includes repeated attempts with different payloads, Linux command execution (whoami, id), attempts to create files (/tmp/pwned.txt), and attempts to read ‘/etc/passwd/.’

    “This behavior demonstrates that threat actors aren’t just running automated scans, but are actively debugging and refining their exploitation techniques against live targets,” comment AWS researchers.

    Attack surface management (ASM) platform Assetnote has released a React2Shell scanner on GitHub that can be used to determine if an environment is vulnerable to  React2Shell.

    Break down IAM silos like Bitpanda, KnowBe4, and PathAI

    Broken IAM isn’t just an IT problem – the impact ripples across your whole business.

    This practical guide covers why traditional IAM practices fail to keep up with modern demands, examples of what “good” IAM looks like, and a simple checklist for building a scalable strategy.

    Share. Facebook Twitter Pinterest LinkedIn Reddit WhatsApp Telegram Email
    Previous ArticleCloudflare down, websites offline with 500 Internal Server Error
    Next Article Pharma firm Inotiv discloses data breach after ransomware attack
    TechAiVerse
    • Website

    Jonathan is a tech enthusiast and the mind behind Tech AI Verse. With a passion for artificial intelligence, consumer tech, and emerging innovations, he deliver clear, insightful content to keep readers informed. From cutting-edge gadgets to AI advancements and cryptocurrency trends, Jonathan breaks down complex topics to make technology accessible to all.

    Related Posts

    New free-to-play action-adventure RPG launches on Steam with 2,300 player peak and over 100 characters

    March 5, 2026

    Hisense U7SG Mini LED TVs launch with 330 Hz gaming mode, 3000 nits brightness and sizes up to 116 inches

    March 5, 2026

    Yahoo pauses IAB membership amid a series of quiet cost-saving measures

    March 5, 2026
    Leave A Reply Cancel Reply

    Top Posts

    Ping, You’ve Got Whale: AI detection system alerts ships of whales in their path

    April 22, 2025705 Views

    Lumo vs. Duck AI: Which AI is Better for Your Privacy?

    July 31, 2025290 Views

    6.7 Cummins Lifter Failure: What Years Are Affected (And Possible Fixes)

    April 14, 2025164 Views

    6 Best MagSafe Phone Grips (2025), Tested and Reviewed

    April 6, 2025124 Views
    Don't Miss
    Gadgets March 6, 2026

    Apple MacBook Neo Officially Launches in Malaysia From RM2,499

    Apple MacBook Neo Officially Launches in Malaysia From RM2,499 Apple has introduced the MacBook Neo,…

    New free-to-play action-adventure RPG launches on Steam with 2,300 player peak and over 100 characters

    Hisense U7SG Mini LED TVs launch with 330 Hz gaming mode, 3000 nits brightness and sizes up to 116 inches

    Yahoo pauses IAB membership amid a series of quiet cost-saving measures

    Stay In Touch
    • Facebook
    • Twitter
    • Pinterest
    • Instagram
    • YouTube
    • Vimeo

    Subscribe to Updates

    Get the latest creative news from SmartMag about art & design.

    About Us
    About Us

    Welcome to Tech AI Verse, your go-to destination for everything technology! We bring you the latest news, trends, and insights from the ever-evolving world of tech. Our coverage spans across global technology industry updates, artificial intelligence advancements, machine learning ethics, and automation innovations. Stay connected with us as we explore the limitless possibilities of technology!

    Facebook X (Twitter) Pinterest YouTube WhatsApp
    Our Picks

    Apple MacBook Neo Officially Launches in Malaysia From RM2,499

    March 6, 20262 Views

    New free-to-play action-adventure RPG launches on Steam with 2,300 player peak and over 100 characters

    March 5, 20260 Views

    Hisense U7SG Mini LED TVs launch with 330 Hz gaming mode, 3000 nits brightness and sizes up to 116 inches

    March 5, 20262 Views
    Most Popular

    7 Best Kids Bikes (2025): Mountain, Balance, Pedal, Coaster

    March 13, 20250 Views

    VTOMAN FlashSpeed 1500: Plenty Of Power For All Your Gear

    March 13, 20250 Views

    Best TV Antenna of 2025

    March 13, 20250 Views
    © 2026 TechAiVerse. Designed by Divya Tech.
    • Home
    • About Us
    • Contact Us
    • Privacy Policy
    • Terms & Conditions

    Type above and press Enter to search. Press Esc to cancel.