Hackers Exploit CVE-2025-55182 to Breach 766 Next.js Hosts, Steal Credentials
AΒ large-scale credential harvesting operationΒ has beenΒ observed exploiting the React2Shell vulnerability as an initial infection vector to steal database credentials, SSH private keys, Amazon Web Services (AWS) secrets, shell command history, Stripe API keys, and GitHub tokens atΒ scale. CiscoΒ Talos has attributed the operation to a threat cluster it tracksΒ as
thehackernews.com/2026/04/hackers-exploit-cve-2025-55182-to.html
thehackernews.com/2026/04/hackers-exploit-cve-2025-55182-to.html
π¬ 0 Crumbs
β 0 saves
π¬ 0 Crumbs
Sign in and join the Nook to post a Crumb.