#lures


Attackers Abuse ChatGPT Custom GPTs to Deliver RAT via ClickFix Lures

Sep 30, 2026 // 18:00

Threat actors are abusing ChatGPT Custom GPTs to disguise them as legitimate product offerings and direct unsuspecting victims to malicious sites that employ ClickFix lures […]

Hacked Ukrainian Sites Serve Fake Cloudflare ClickFix Lures for Psychedelic Stealer

Sep 24, 2026 // 23:38

An active ClickFix campaign has been observed compromising legitimate Ukrainian business websites to inject bogus Cloudflare verification pages and trick victims into downloading a previously […]

ClickFix Lures Deploy ChainScript RAT Using Polygon to Rotate C2 Infrastructure

Sep 21, 2026 // 11:42

Threat actors are leveraging ClickFix-like lures to deliver a previously undocumented remote access trojan (RAT) called ChainScript. “ChainScript has appeared under multiple build names, including […]

Attackers conceal phishing lures using invisible Unicode characters

Sep 7, 2026 // 01:00

Threat actors have adopted the ASCII smuggling technique in phishing campaigns, using invisible Unicode characters to evade email security filters. ASCII smuggling has been used […]

Over 250 ClickFix Domains Use Browser Fingerprinting to Hide macOS Malware Lures

Aug 5, 2026 // 23:57

A macOS ClickFix operation spanning more than 250 front-end domains now fingerprints visitors before deciding whether to show them a malware lure, a change Microsoft […]

⚡ Weekly Recap: Rogue AI Agents, Check Point Exploit, Slopsquatting, ClickFix Lures and More

Jul 27, 2026 // 17:21

Monday starts with the usual promise that everything is under control. Then the logs wake up. This week, trusted tools crossed lines, old flaws found […]

ACR Stealer Uses ClickFix Lures to Steal Browser Tokens and Microsoft 365 Files

Jul 17, 2026 // 11:57

ACR Stealer, an infostealer in circulation since 2024, is walking out of enterprise networks with saved browser passwords, live session tokens, PDFs, Microsoft 365 documents, […]

SCMBANKER Malware Uses ClickFix Lures to Target Mexican Banking Users

Jul 8, 2026 // 17:02

A new banking fraudulent operation is targeting customers of Mexican banks, fintech, payment processors, and cryptocurrency exchanges using ClickFix lures. The activity cluster, tracked by […]

Ousaban Banking Trojan Targets Iberian Bank Users with Fake PDF Lures

Jul 2, 2026 // 02:17

A Brazilian banking trojan called Ousaban is going after Windows users who bank in Spain and Portugal. Fortinet’s FortiGuard Labs identified the campaign in May 2026. It […]

Ousaban Banking Trojan Targets Iberian Bank Users with Fake PDF Lures

Jul 1, 2026 // 18:46

A Brazilian banking trojan called Ousaban is going after Windows users who bank in Spain and Portugal. Fortinet’s FortiGuard Labs identified the campaign in May 2026. It […]

1 2 Next