Daily Digest

Global Patching Scramble as Critical "React2Shell" RCE Vulnerability Sees Widespread Exploitation

Global Patching Scramble as Critical "React2Shell" RCE Vulnerability Sees Widespread Exploitation

December 9, 2025
8 articles (7 new, 1 updated)
24 min read

Summary

This cybersecurity brief for December 9, 2025, covers a critical unauthenticated RCE vulnerability, dubbed "React2Shell" (CVE-2025-55182), affecting React Server Components and now under active exploitation by multiple threat actors, including state-sponsored groups. Other major developments include the DeadLock ransomware using a novel "Bring Your Own Vulnerable Driver" technique to disable EDRs, the evolution of IAB Storm-0249's tactics, and a new "code-to-cloud" attack vector abusing leaked GitHub Personal Access Tokens. The brief details these threats, provides technical analysis, and offers actionable mitigation strategies for defenders.

Filter by Category

New Articles (7)

Updated Articles (1)

📢 Share This Publication

Help others stay informed about cybersecurity threats