React2Shell Exploit: Hackers Launch Automated Credential Theft

Date:

Title: Large-Scale Credential Theft Campaign Targets Vulnerable Apps

Hackers have launched a widespread campaign to steal sensitive credentials using the React2Shell vulnerability, affecting vulnerable Next.js applications. At least 766 hosts across various cloud providers have been compromised, leading to the theft of critical information like AWS credentials, SSH keys, and API tokens.

The attackers utilized a framework called NEXUS Listener to automate the extraction of sensitive data. This operation allows hackers to view statistics on the stolen credentials and the number of compromised hosts in real time.

The impact of this breach could be severe, allowing attackers to take over cloud accounts and potentially launch supply chain attacks. Victims may also face regulatory repercussions due to privacy violations.

To mitigate risks, experts recommend applying security updates for React2Shell, auditing server-side data, and rotating all credentials. Ensuring secure configurations and implementing strict access controls are also vital.

Risk Level: High

Source: View Original Report

Share post:

spot_imgspot_img

Popular

More like this
Related

WPScan 4.0.0: Critical XSS Vulnerability Exposed!

WordPress Vulnerability Report: WPScan 4.0.0 Released Introduction The latest version of...

119 Edge Extensions: Malware Disguised as Useful Tools

Cybersecurity Alert: Malware Infiltrates Popular Browser Extensions A recent malware...

200K WordPress Sites Face XSS Risk from Burst Statistics Plugin

Critical Vulnerability Discovered in Burst Statistics Plugin for WordPress On...

Foxconn Cyberattack: Nitrogen Ransomware Strikes WordPress Sites

Cyberattack Hits Foxconn: Major Data Breach Reported Foxconn, the largest...