Automated Credential Harvesting Campaign #Exploits #React2Shell #Flaw. An emerging threat cluster tracked as UAT-10608 is exploiting vulnerable Web-exposed #Nextjs #apps and using an automated tool to exfiltrate credentials, secrets, and other system data.
https://www.darkreading.com/cyberattacks-data-breaches/automated-credential-harvesting-campaign-react2shell
Automated Credential Harvesting Campaign Exploits React2Shell

An emerging threat cluster is exploiting vulnerable Web-exposed Next.js apps and using an automated tool to steal credentials, secrets, and other data.

Dark Reading