threat-intel
ClickFix Smuggles Payloads Through Browser Cache to Bypass Windows Run Limits
HighCVSS 7.5ExploitedEPSS 2%
Summary
A new ClickFix attack leverages compromised websites to smuggle malicious payloads through a browser cache, bypassing character limits and security controls. This tactic has been increasingly utilized by threat actors, including nation-state groups like Stardust Chollima (North Korea) and Sandworm, to deliver malware and compromise systems. Microsoft recommends enhanced security measures to detect and mitigate these attacks.
Summary written automatically in our own words from the original article, which belongs to its publisher and remains the reference. It may contain errors. Sources & data
