Cryptocnews-Crypto News, Cryptocurrency News, Blockchain News, NFT News
    What's Hot

    Why £1 still buys more than $1, a crypto native guide to the least intuitive chart on Earth

    01/24/2026

    XRP Trend Still Coherent On Binance As CVD Correlation Remains Supportive

    01/24/2026

    SEC Dismisses Civil Action Against Gemini in Crypto Lending Case

    01/24/2026
    Facebook Twitter Instagram
    • Business
    • Markets
    • Get In Touch
    • Our Authors
    Facebook Twitter Instagram
    Cryptocnews-Crypto News, Cryptocurrency News, Blockchain News, NFT News
    • Home
    • Business

      Binance Leads Push To Offer Tokenized US Stocks Outside Traditional Markets

      01/23/2026

      BitGo Stock Plunges Below IPO Price on Second Day of Trading

      01/23/2026

      LayerZero defies token unlock pressure, ZRO breaks above $2.20

      01/23/2026

      Dogecoin price forecast: No respite for bulls as DOGE drops to $0.12

      01/23/2026

      Tether Gold (XAUt) surges as gold approaches $5,000 mark

      01/23/2026
    • Technology
      1. Business
      2. Insights
      3. View All

      Binance Leads Push To Offer Tokenized US Stocks Outside Traditional Markets

      01/23/2026

      BitGo Stock Plunges Below IPO Price on Second Day of Trading

      01/23/2026

      LayerZero defies token unlock pressure, ZRO breaks above $2.20

      01/23/2026

      Dogecoin price forecast: No respite for bulls as DOGE drops to $0.12

      01/23/2026

      XRP Trend Still Coherent On Binance As CVD Correlation Remains Supportive

      01/24/2026

      SEC Dismisses Civil Action Against Gemini in Crypto Lending Case

      01/24/2026

      Institutional-Scale Ethereum Lockup: Bitmine Crosses 1.94M ETH Staked Mark

      01/24/2026

      OpenSea Insider Trading Case Ends Without A Retrial

      01/23/2026

      Why £1 still buys more than $1, a crypto native guide to the least intuitive chart on Earth

      01/24/2026

      From Stellar to Canton: How Franklin Templeton Adopted Tokenization

      01/24/2026

      Bitcoin’s $150,000 forecast slash proves the institutional “sure thing” is actually a high-stakes gamble for 2026

      01/23/2026

      What uses more power, Bitcoin, streaming, AI, or social media?

      01/23/2026
    • Insights
      1. Bitcoin
      2. Ethereum
      3. Eurozone
      4. Monero
      5. View All

      CertiK Targets IPO to Become Web3’s First Public Security Infrastructure Firm

      01/23/2026

      LayerZero defies token unlock pressure, ZRO breaks above $2.20

      01/23/2026

      Dogecoin price forecast: No respite for bulls as DOGE drops to $0.12

      01/23/2026

      Tether Gold (XAUt) surges as gold approaches $5,000 mark

      01/23/2026

      Ripple Deepens Turkey Push With Renewed Garanti BBVA Kripto Custody Deal

      01/23/2026

      LayerZero defies token unlock pressure, ZRO breaks above $2.20

      01/23/2026

      Dogecoin price forecast: No respite for bulls as DOGE drops to $0.12

      01/23/2026

      Tether Gold (XAUt) surges as gold approaches $5,000 mark

      01/23/2026

      Oklahoma Considers Bitcoin Pay Option For State Employees

      01/23/2026

      LayerZero defies token unlock pressure, ZRO breaks above $2.20

      01/23/2026

      Dogecoin price forecast: No respite for bulls as DOGE drops to $0.12

      01/23/2026

      Tether Gold (XAUt) surges as gold approaches $5,000 mark

      01/23/2026

      LayerZero defies token unlock pressure, ZRO breaks above $2.20

      01/23/2026

      Dogecoin price forecast: No respite for bulls as DOGE drops to $0.12

      01/23/2026

      Tether Gold (XAUt) surges as gold approaches $5,000 mark

      01/23/2026

      Hedera (HBAR) price drops toward $0.10 despite McLaren F1 partnership

      01/23/2026

      XRP Trend Still Coherent On Binance As CVD Correlation Remains Supportive

      01/24/2026

      SEC Dismisses Civil Action Against Gemini in Crypto Lending Case

      01/24/2026

      Institutional-Scale Ethereum Lockup: Bitmine Crosses 1.94M ETH Staked Mark

      01/24/2026

      OpenSea Insider Trading Case Ends Without A Retrial

      01/23/2026
    • Markets
    • Get In Touch
    Cryptocnews-Crypto News, Cryptocurrency News, Blockchain News, NFT News
    Home»Business»Crypto Wallets Targeted In JavaScript Library Exploit—Cybersecurity Firm
    Business

    Crypto Wallets Targeted In JavaScript Library Exploit—Cybersecurity Firm

    adminBy admin12/16/2025No Comments3 Mins Read
    Facebook Twitter Pinterest LinkedIn Tumblr Email
    Share
    Facebook Twitter LinkedIn Pinterest Email

    Trusted Editorial content, reviewed by leading industry experts and seasoned editors. Ad Disclosure

    A critical flaw in React Server Components is being used by attackers to inject malicious code into live websites, and that code is siphoning crypto from connected wallets.

    Reports note that the vulnerability, tracked as CVE-2025-55182, was published by the React team on December 3 and carries a maximum severity rating.

    Cybersecurity firm Security Alliance (SEAL) has confirmed that multiple crypto websites are actively being targeted, and they urge operators to review all React Server Components immediately to prevent wallet-draining attacks.

    Security teams say the bug allows an unauthenticated attacker to run code on affected servers, which has been turned into wallet-draining campaigns across several sites.

    Image: Shutterstock

    A Wide Risk To Sites Using Server Components

    SEAL said the flaw affects React Server Components packages in versions 19.0 through 19.2.0, and patched releases such as 19.0.1, 19.1.2, and 19.2.1 were issued after disclosure.

    Crypto Drainers using React CVE-2025-55182

    We are observing a big uptick in drainers uploaded to legitimate (crypto) websites through exploitation of the recent React CVE.

    All websites should review front-end code for any suspicious assets NOW.

    — Security Alliance (@_SEAL_Org) December 13, 2025

    The vulnerability works by exploiting unsafe deserialization in the Flight protocol, letting a single crafted HTTP request execute arbitrary code with the web server’s privileges. Security teams have warned that many sites using default configurations are at risk until they apply the updates.

    Attackers Inject Wallet-Draining Scripts Into Compromised Pages

    According to industry posts, threat actors are using the exploit to plant scripts that prompt users to connect Web3 wallets and then hijack or redirect transactions.

    In some cases the injected code alters the user interface or swaps addresses, so a user believes they are sending funds to one account while the transaction actually pays an attacker. This method can hit users who trust familiar crypto sites and connect wallets without checking every approval.

    BTCUSD now trading at $89,626. Chart: TradingView

    Scanners And Proof-Of-Concepts Flooded Underground Forums

    Security researchers report a rush of scanning tools, fake proof-of-concept code, and exploit kits shared in underground forums shortly after the vulnerability was disclosed.

    Cloud and threat-intelligence teams have observed multiple groups scanning for vulnerable servers and testing payloads, which has accelerated active exploitation.

    Some defenders say that the speed and volume of scanning have made it hard to stop all attempts before patches are applied.

    More Than 50 Organizations Reported Compromise Attempts

    Based on reports from incident responders, post-exploitation crypto activity has been observed at more than 50 organizations across finance, media, government, and tech.

    In several investigations, attackers established footholds and then used those to deliver further malware or to seed front-end code that targets wallet users.

    SEAL has emphasized that organizations failing to patch or monitor their servers could experience further attacks, and ongoing monitoring is essential until all systems are verified safe.

    Featured image from Unsplash, chart from TradingView

    Editorial Process for bitcoinist is centered on delivering thoroughly researched, accurate, and unbiased content. We uphold strict sourcing standards, and each page undergoes diligent review by our team of top technology experts and seasoned editors. This process ensures the integrity, relevance, and value of our content for our readers.

    #Crypto #Wallets #Targeted #JavaScript #Library #ExploitCybersecurity #Firm

    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email

    Related Posts

    SEC Dismisses Civil Action Against Gemini in Crypto Lending Case

    01/24/2026

    Binance Leads Push To Offer Tokenized US Stocks Outside Traditional Markets

    01/23/2026

    BitGo Stock Plunges Below IPO Price on Second Day of Trading

    01/23/2026

    LayerZero defies token unlock pressure, ZRO breaks above $2.20

    01/23/2026
    Add A Comment

    Leave A Reply Cancel Reply

    Top Posts

    Millennials Are Quitting Job to Become Day Traders

    01/20/2021

    Jack Dorsey Says Bitcoin Will Unite The World

    01/15/2021

    Hong Kong Customs Arrest Four in Crypto Laundering Bust

    01/15/2021

    Subscribe to Updates

    Get the latest sports news from SportsSite about soccer, football and tennis.

    Advertisement
    Demo
    Facebook Twitter Instagram Pinterest YouTube
    Top Insights

    Why £1 still buys more than $1, a crypto native guide to the least intuitive chart on Earth

    01/24/2026

    XRP Trend Still Coherent On Binance As CVD Correlation Remains Supportive

    01/24/2026
    Get Informed

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    © {2025} Copyright CryptocNews.com
    • Home
    • Business
    • Markets
    • Technology
    • Contact us

    Type above and press Enter to search. Press Esc to cancel.