Tuesday, 9 December 2025

North Korea-linked Actors Exploit React2Shell to Deploy New EtherRAT Malware

iT4iNT SERVER Threat actors with ties to North Korea have likely become the latest to exploit the recently disclosed critical security React2Shell flaw in React Server Components (RSC) to deliver a previously undocumented remote access trojan dubbed EtherRAT.
"EtherRAT leverages Ethereum smart contracts for command-and-control (C2) resolution, deploys five independent Linux persistence mechanisms, and VDS VPS Cloud


http://dlvr.it/TPkM6h

No comments:

Post a Comment

ThreatsDay Bulletin: Claude Chat Abuse, NastyC2 npm Packages, Device-Code Phishing + 25 More Stories

iT4iNT SERVER The internet did not break this week. It got used exactly as designed, which is worse. Searches were siphoned through shady ...