North Korean Hackers Deploy EtherRAT Malware in React2Shell Exploits
10 December 2025 at 11:34
Sysdig discovered North Korea-linked EtherRAT, a stealthy new backdoor using Ethereum smart contracts for C2 after exploiting the critical React2Shell vulnerability (CVE-2025-55182).