Distribution of EtherRAT Malware Exploiting React2Shell Vulnerability (CVE-2025-55182)

Distribution of EtherRAT Malware Exploiting React2Shell Vulnerability (CVE-2025-55182)

AhnLab SEcurity intelligence Center (ASEC) recently discovered an advanced malware distribution campaign using Node.js while tracking the recently disclosed React2Shell vulnerability. This attack installs EtherRAT through multiple stages, with the ultimate goal of gaining a foothold, stealing information, and stealing cryptocurrency.   After the threat actor accessed the IP address

Vercel Product Security Update Advisory (CVE-2025-29927)

Vercel Product Security Update Advisory (CVE-2025-29927)

Overview We have released a security update to address a vulnerability in Vercel products. Users of affected products are advised to update to the latest version.    Affected Products   CVE-2025-29927 Next.js 15.x VersionsNext.js 14.x VersionsNext.js 13.x VersionsNext.js 12.x Versions     Resolved Vulnerabilities Improper Authorization Vulnerability (CVE-2025-29927)