React flaw exposes 5K servers
- Threat analysts reported a two‑decade pattern of state‑backed APTs exploiting a React vulnerability to compromise roughly 5,000 servers tied to China and Venezuela‑linked activity. (x.com) - The analysis links some activity to Lazarus‑style tradecraft and cites CISA guidance urging defenders to 'assume insiders' and adopt zero‑trust controls. (x.com) - Critical sectors named across the report include power grids, water, and transport, underscoring the need for segmentation and rapid patch management. (x.com)