ZnDoor Malware Targets React2Shell Vulnerability in Japanese Networks
Article Content
Browse articles
In December 2025, Japanese organizations are facing attacks exploiting the React2Shell vulnerability (CVE-2025-55182) in React/.js applications. Initially used for cryptocurrency mining, the ZnDoor malware has evolved to compromise network infrastructure. Security researchers are actively investigating these sophisticated threats.
Ask AI about this cluster
Answers cite the sources they use
Updated 197d ago How this analysis works
More articles in this cluster (3)
Following this threat?
Track XHunt, React2Shell and Jaguar Land Rover in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Multiple CVEs Expose Vulnerabilities in Cybersecurity Tools and Applications A series of vulnerabilities have been reported affecting various cybersecurity tools and applications. Notable among them is CVE-2024-51482, a blind SQL injection vulnerability in ZoneMinder, allowing attackers to execute arbitrary SQL commands on the database server. CVE-2026-22557, a path traversal vulnerability in…
Novo Nordisk Data Breach Exploits Hardcoded GitHub Tokens Novo Nordisk suffered a data breach linked to the cyber extortion group FulcrumSec, which exploited hardcoded credentials found in client-side JavaScript across two subdomains. The attackers accessed over 1 terabyte of sensitive data, including experimental drug data and customer records, after gaining entry in June…