Threat actors are ramping up the use of ‘ClickFix’ social engineering attacks, with this tactic likely proving highly effective for malware deployment.
A new analysis by Proofpoint highlighted numerous campaigns by multiple different threat actors utilizing this tactic since March 2024.
This included a suspected Russian espionage group using this technique to target Ukrainian organizations.
Various malware have been deployed using ClickFix, including AsyncRAT, Danabot, DarkGate, Lumma Stealer and NetSupport.
No tags.