A large-scale credential harvesting operation has been observed exploiting the React2Shell vulnerability as an initial infection vector to steal database credentials, SSH private keys, Amazon Web Services (AWS) secrets, shell command history, Stripe API keys, and GitHub tokens at scale. Cisco Talos
โกKey InsightsAI analyzingโฆ
I
info@thehackernews.com (The Hacker News)
๐ก
Original Source
The Hacker News
https://thehackernews.com/2026/04/hackers-exploit-cve-2025-55182-to.htmlTags:#security#the-hacker-news
Found this useful? Share it!
Read the Full Story
Continue reading on The Hacker News
Related Stories

๐Security
Geopolitics, AI, and Cybersecurity: Insights From RSAC 2026
about 10 hours ago

๐Security
Not Toying Around: Hasbro Attack May Take 'Weeks' to Remediate
about 10 hours ago

๐Security
Security Bosses Are All-In on AI. Here's Why
about 12 hours ago

๐Security
RSAC 2026: AI Dominates, But Community Remains Key to Security
about 15 hours ago
