Topic: etherrat malware

  • North Korean Hackers Target React2Shell Flaw in EtherRAT Malware

    North Korean Hackers Target React2Shell Flaw in EtherRAT Malware

    A sophisticated malware implant called EtherRAT exploits the critical React2Shell vulnerability, using Ethereum smart contracts for command-and-control and establishing five persistence mechanisms on Linux systems, with links to North Korean threat actors. The React2Shell vulnerability is a sever...

    Read More »
  • React2Shell flaw fuels ransomware attacks

    React2Shell flaw fuels ransomware attacks

    The **React2Shell** vulnerability (CVE-2025-55182) is being actively exploited, allowing attackers to gain unauthorized server access and deploy ransomware in under a minute without authentication. Attackers used this flaw to deploy the **Weaxor ransomware**, a less sophisticated rebrand of older...

    Read More »