ESET Research investigates MATCHBOIL, a C# downloader used by the Russia-aligned group UAC-0099 to download, install, and persist additional ...
A ClickFix campaign has been observed hiding a VBScript payload in the browser cache, disguised as an image, so the script was already on the device when the victim was tricked into running a command ...
ClickFix attacks fake CAPTCHA pages to trick users into running malicious commands, delivering malware through compromised websites.
Cyber-espionage actor UAC-0099 has been steadily refining its flagship dropper in campaigns targeting Ukrainian organizations ...
ClickFix Fake CAPTCHA Attack Tricks Users A new ClickFix fake CAPTCHA attack is turning routine web safety checks into a route for malware. Visitors to compromised websites are shown fake CAPTCHA or ...
MATCHBOIL malware from Russia-aligned UAC-0099 keeps getting harder to analyze and has reached a Ukrainian energy company, ...
TrendAI links UAC-0099 to ASHVEIN, a .NET stealer and RAT used in attacks targeting Ukrainian government personnel.
Microsoft observed ClickFix attacks using browser cache smuggling to execute cached VBScript and launch a credential-targeting malware chain.
Continuation from last timeWhat I made this time I decided not to use PythonThe fewer tools I could use, the more effort it ...
Eset says Russia-aligned UAC-0099 has spent since at least 2024 refining Matchboil, a downloader used against Ukrainian organizations that now supports recurring ...
ChatGPT malware campaign plants a fake model on OpenAI's real chatgpt.com, directing Windows users to a ClickFix PowerShell ...