Security · 16h ago
Russian Hackers Use Fake CAPTCHAs to Deploy Malware in Ukraine
Russian state-sponsored group UAC-0145, linked to Sandworm, is using fake CAPTCHA prompts to trick Ukrainian users into installing data-stealing malware. CERT-UA reported the campaign targets devices with ClickFix-style social engineering. The malware exfiltrates sensitive information from compromised systems.
Meridian48 take
The ClickFix tactic shows attackers adapting user trust in CAPTCHAs, a reminder that even routine security checks can be weaponized.
Read the full reporting
UAC-0145 Uses ClickFix CAPTCHAs to Infect Ukrainian Devices wih Malware →
The Hacker News
cyber-espionagesandworm