ClearFake: Threat Cluster Using ClickFix Lures
ClearFake is a threat cluster known for compromising legitimate websites and planting fake CAPTCHA lures that use ClickFix-style social engineering decoys. It…
ClearFake is a threat cluster known for compromising legitimate websites and planting fake CAPTCHA lures that use ClickFix-style social engineering decoys. It…
Gen Threat Labs is a cybersecurity research entity that, along with Microsoft, highlighted ClearFake campaigns distributing WordlistLoader and Amatera Stealer using ClickFix…
Cybersecurity researchers have uncovered a novel campaign that abuses FTP banners as dead drop resolvers (DDRs) to deliver two previously unreported remote…
Cybersecurity researchers at OX Security have uncovered a campaign that abuses 24 npm packages as free phishing infrastructure. The packages host HTML…
Cybersecurity researchers have identified two new malware families, WordlistLoader and SynkLoader, which are being used to deliver next-stage payloads and potentially sell…
WordlistLoader is a malware family distributed through ClearFake campaigns using ClickFix lures. It is delivered via WebDAV servers and is often associated…
Cybersecurity researchers have uncovered a global cybercrime operation dubbed 'StopAndProtect' that abuses nearly 2,000 hacked WordPress websites to distribute malware, steal data,…
MacSync Stealer is a macOS-focused information stealer that collects credentials, cookies, SSH keys, AWS credentials, and other sensitive data. It uses ClickFix…
Microsoft Defender Experts have linked more than 30 web domains to MacSync Stealer, a macOS-focused information stealer, by correlating endpoint and network…
CRPx0 is a ransomware group that supports white-label operations and markets a 100% profit-sharing model for RaaS buyers. It also offers Hacking-as-a-Service…