
SANS Stormcast Thursday, December 11th, 2025: Possible CVE-2024-9042 variant; react2shell exploits; notepad++ update hijacking; macOS priv escalation
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)
00:00
Technical details of the exploit pattern
Johannes explains how the injection used $() shell expansion and similarities to the patched node log query bug.
Play episode from 01:12
Transcript


