EtherRAT and EtherHiding mark a new era in malware operations, leveraging Ethereum’s blockchain for stealthy, resilient command-and-control. Learn how attackers outmaneuver defenders and what organizations can do to adapt.
EtherRAT is a sophisticated new malware that leverages a critical React vulnerability and the Ethereum blockchain to control infected systems, marking a dangerous evolution in cybercrime.
North Korean hackers have rapidly weaponized the EtherRAT malware to exploit the React2Shell web vulnerability, using Ethereum smart contracts for stealthy command-and-control and persistent access. This marks a new escalation in state-sponsored cyberattacks targeting cloud infrastructure.
A newly exposed React vulnerability has enabled North Korean hackers to launch EtherRAT, a remote access tool that uses the Ethereum blockchain for untraceable control and deep persistence in live web environments.
A new North Korean-led cyber campaign exploits the React2Shell bug and uses Ethereum smart contracts to deploy EtherRAT, a remote access trojan engineered for stealth, persistence, and developer-focused attacks.
North Korean hackers have rapidly weaponized the React2Shell vulnerability to deploy EtherRAT, a cutting-edge malware implant leveraging blockchain-based command-and-control. This feature investigates the attack chain, technical innovations, and urgent defensive steps.