Cybersecurity researchers have disclosed details of an active web traffic hijacking campaign that has targeted NGINX installations and management panels in an attempt to route it through the attacker's infrastructure.


The Hacker News
Malicious NGINX Configurations Enable Large-Scale Web Traffic Hijacking Campaign
Active React2Shell exploitation uses malicious NGINX configurations to hijack web traffic, targeting Baota panels, Asian TLDs, and government domains.
