A newly discovered loophole in one of the web’s most used development tools is giving hackers a new way to drain cryptocurrency wallets. Cybersecurity researchersA newly discovered loophole in one of the web’s most used development tools is giving hackers a new way to drain cryptocurrency wallets. Cybersecurity researchers

Second JavaScript Exploit in Four Months Exposes Crypto Sites to Wallet Drainers

2025/12/15 21:38

A newly discovered loophole in one of the web’s most used development tools is giving hackers a new way to drain cryptocurrency wallets.

Cybersecurity researchers have reported a surge in malicious code uploaded to legitimate websites through a vulnerability in the popular JavaScript library React — a tool used by countless crypto platforms for their front-end systems.

Crypto Drainer Attacks Surge via React Flaw

According to Security Alliance (SEAL), a nonprofit cybersecurity organization, criminals are actively exploiting a recently disclosed React vulnerability labeled CVE-2025-55182.

“We are observing a big uptick in drainers uploaded to legitimate crypto websites through exploitation of the recent React CVE,” SEAL stated on X (formerly Twitter). “All websites should review front-end code for any suspicious assets NOW.

  • HP CEO “Exposes” Ink Cartridge Vulnerability Triggering Legal Storm
  • Exness Rewards Up to $10,000 in New Bug Bounty Program
  • How to Increase Business Security Using a Honeypot

The flaw enables unauthenticated remote code execution, allowing attackers to secretly inject wallet-draining scripts into websites. The malicious code tricks users into approving fake transactions via deceptive pop-ups or reward prompts.

Read more: Hackers Exploit JavaScript Accounts in Massive Crypto Attack Reportedly Affecting 1B+ Downloads

SEAL cautioned that some compromised sites may be unexpectedly flagged as phishing risks. The organization advised web administrators to conduct immediate security audits to catch any injected assets or obfuscated JavaScript.

"If your project is getting blocked, that may be the reason. Please review your code first before requesting phishing page warning removal. The attack is targeting not only Web3 protocols! All websites are at risk. Users should exercise caution when signing ANY permit signature."

Phishing Flags and Hidden Drainers

The group warned that developers who find their projects mistakenly blocked as phishing pages should inspect their code first before appealing the warning.

The React development team confirmed on December 3 that it had patched the vulnerability after white hat hacker Lachlan Davidson privately reported the issue.

The fix affects the react-server-dom-webpack, react-server-dom-parcel, and react-server-dom-turbopack packages. The team urged all developers using these components to update immediately.

Market Opportunity
MetaDOS Logo
MetaDOS Price(SECOND)
$0.0000045
$0.0000045$0.0000045
0.00%
USD
MetaDOS (SECOND) Live Price Chart
Disclaimer: The articles reposted on this site are sourced from public platforms and are provided for informational purposes only. They do not necessarily reflect the views of MEXC. All rights remain with the original authors. If you believe any content infringes on third-party rights, please contact [email protected] for removal. MEXC makes no guarantees regarding the accuracy, completeness, or timeliness of the content and is not responsible for any actions taken based on the information provided. The content does not constitute financial, legal, or other professional advice, nor should it be considered a recommendation or endorsement by MEXC.

You May Also Like

Crypto.com Reveals Hidden User Data Breach

Crypto.com Reveals Hidden User Data Breach

The post Crypto.com Reveals Hidden User Data Breach appeared on BitcoinEthereumNews.com. According to a Bloomberg investigation, Crypto.com, one of the world’s largest cryptocurrency exchanges, reportedly suffered a security breach it never disclosed. The report linked the incident to Scattered Spider, a hacking group that often targets companies with social engineering tactics. The group comprises mainly teenagers who specialize in tricking employees into handing over their credentials. Sponsored Sponsored According to Bloomberg, the attackers posed as IT staff and persuaded unnamed Crypto.com employees to surrender login credentials. Once inside, they attempted to escalate their access by targeting senior staff accounts. Crypto.com told Bloomberg that the attack affected only “a very small number of individuals” and emphasized that customer funds remained untouched. The firm has yet to provide additional information about the incident as of press time. Meanwhile, security experts argue that the exchange’s decision not to disclose the breach undermines confidence in its security practices. They argue that its failure to share details about the incident leaves its users uncertain about the extent of the exposure and vulnerable to possible follow-up attacks. This concern is significant because Coinbase previously suffered a similar breach that exposed its customers to more than $300 million yearly losses. On-chain investigator ZachXBT accused Crypto.com of deliberately covering up the breach. He also stressed that this was not the first time the platform had been linked to undisclosed security lapses Sponsored Sponsored His comments echo wider industry frustration about exchanges that quietly downplay breaches to protect their reputations. Meanwhile, the incident has also reignited criticism of the industry’s reliance on Know Your Customer (KYC) systems. Pseudonymous security researcher Pcaversaccio reacted sharply to the issues, arguing that KYC requirements create massive data honeypots for hackers. “You can change a password easily, but not your passport and they f#cking know it well. We’re basically the collateral in their surveillance racket,”…
Share
BitcoinEthereumNews2025/09/22 03:09
Shiba Inu Price Prediction: 1 Trillion SHIB Hits Exchanges – What Are Whales Planning Behind the Scenes?

Shiba Inu Price Prediction: 1 Trillion SHIB Hits Exchanges – What Are Whales Planning Behind the Scenes?

Whale activity around SHIB has suddenly surged, and it could spell trouble for the bulls.Over 1 trillion SHIB tokens, worth more than $8 million, were moved to
Share
Coinstats2025/12/16 07:32
Trump Hints at Samourai Wallet Pardon — Another After CZ, Ulbricht

Trump Hints at Samourai Wallet Pardon — Another After CZ, Ulbricht

The post Trump Hints at Samourai Wallet Pardon — Another After CZ, Ulbricht appeared on BitcoinEthereumNews.com. President Donald Trump said he would consider pardoning
Share
BitcoinEthereumNews2025/12/16 08:41