Coalition’s Toomey: Rising Cyber Interconnectedness Pushes Insurers to Boost Detection, Response

AM Best
AM BestFeb 10, 2026

Why It Matters

The incident illustrates that single widely used software flaws can produce fast, systemic cyber losses and force insurers to act as active risk managers, not just payors—affecting pricing, coverage and resilience strategies for thousands of smaller firms.

Summary

Coalition highlighted the rapid cascade from disclosure to exploitation in the recent React-to-Shell vulnerability, which targeted React server components and left Next.js-hosted sites especially exposed. The firm said threat actors began scanning immediately after disclosure and that working exploits appeared within a day, prompting Coalition to proactively notify and patch vulnerable policyholders. The episode underscores how widely used open-source components can create aggregation risk across insurers’ books and how quickly small and mid-size businesses—which make up most policy counts but often lack dedicated security teams—can be affected. Coalition says insurers are responding by enhancing detection, zero-day alerting and incident response support, and incorporating aggregation modeling into underwriting and pricing.

Original Description

Joe Toomey, vice president, underwriting security, Coalition, discusses emerging cyber vulnerabilities such as React2Shell, and how insurers help clients strengthen resilience and manage evolving risk.
To view more videos, please visit http://www.ambest.com/video
Follow us on Social Media: http://www.ambest.com/socialmedia/

Comments

Want to join the conversation?

Loading comments...