Hackers Use Fake CAPTCHA To Infect Windows PCs
#1
Exclamation 
Quote:Hackers are using fake CAPTCHA verification pages to trick Windows users into running malicious PowerShell commands that install information-stealing software.

Security researchers at LevelBlue say that the campaign publishes StealC, an information stealer that exfiltrates browser credentials, cryptocurrency wallets, Steam accounts, Outlook login data, system information, and screenshots. The stolen data is sent to a command-and-control (C2) server using RC4-encrypted HTTP traffic.
Similar hacks we've already seen in the past.

How the attack works

Attackers inject JavaScript into these sites. When users visit, they are redirected to a fake CAPTCHA page designed to look like a Cloudflare verification screen.

[Image: 583098c1ba0a2d578ef143eb6461406e.jpg]

Instead of presenting a traditional image or checkbox challenge, the fake CAPTCHA instructs users to:
  1. Press Windows key + R
  2. Press Ctrl + V
  3. Press Enter
The instructions are framed as part of a verification process.

This technique, referred to as “ClickFix,” exploits user trust in simple keyboard prompts. Victims are made to believe they are completing a routine security check as usual.

Continue Reading...
Reply


Forum Jump:


Users browsing this thread: 1 Guest(s)
[-]
Welcome
You have to register before you can post on our site.

Username/Email:


Password:





[-]
Recent Posts
AMD News
AMD Radeon RX 9070 G...harlan4096 — 08:02
AMD News
AMD Ryzen 7 7700X3D ...harlan4096 — 08:02
AMD News
AMD previews EXPO Ul...harlan4096 — 08:02
AMD News
AMD confirms Ryzen 7...harlan4096 — 08:01
AMD News
AMD extends AM5 sock...harlan4096 — 08:00

[-]
Birthdays
Today's Birthdays
avatar (51)nteriageda
Upcoming Birthdays
avatar (42)tapedDow
avatar (48)BrantgoG
avatar (50)eapedDow
avatar (47)Carlosskake
avatar (49)rapedDow
avatar (44)Johnsonsyday
avatar (49)Groktus
avatar (41)efodo
avatar (39)Tedscolo
avatar (46)brakasig
avatar (51)smudloquask
avatar (46)benchJem
avatar (45)JamesReshy
avatar (47)Francisemefe
avatar (40)leoniDup
avatar (39)Patrizaancem
avatar (39)biobdam
avatar (42)zacforat
avatar (47)NemrokReks
avatar (50)Jasoncedia
avatar (38)Barrackleve
avatar (40)Julioagopy
avatar (50)aolaupitt2558
avatar (48)vadimTob
avatar (38)leannauu4
avatar (40)storoBox
avatar (48)kinotHeemn
avatar (39)Ceballos1976
avatar (40)efynu
avatar (32)horancos

[-]
Online Staff
There are no staff members currently online.

>