Back to Intel

Intel Node

Year in Review: Vulnerabilities old and new and something React2

highvulnerability2026-04-07T10:00:11+00:00source excerpt
vulnerabilityexploitationwindowsidentity

Source excerpt · The upstream feed supplied only part of this article.Read the original source →

The year was characterized by an unending beat-down on infrastructure that relied on older enmeshed dependencies (e.g., Log4j and PHPUnit), while React2Shell rocketed to the highest percentage of attacks for the entire year within the last three weeks of 2025.

Speed and age shouldn’t be allowed to pair up, but that is the theme of the  Talos 2025 Year in Review  vulnerability findings. Figure 1. React/React2Shell (2025) at the top, with PHPUnit (2017) and Log4j (2021) following up.

Read Original Source