DOUBLECUP ClickFix: How Malware Hides in Browser Cache
A new Russian loader-as-a-service called DOUBLECUP ClickFix hides malicious code in cached PNGs, delivering CountLoader and a novel DeviceManager RAT. Learn the mechanics and defensive steps.
A new Russian loader-as-a-service called DOUBLECUP ClickFix hides malicious code in cached PNGs, delivering CountLoader and a novel DeviceManager RAT. Learn the mechanics and defensive steps.
UAC-0145, a Sandworm sub‑cluster, used ClickFix CAPTCHAs on at least 10 Ukrainian sites in June‑July 2026 to deliver data‑stealing malware, raising serious security concerns.
Netskope Threat Labs uncovers a fileless macOS ClickFix campaign that steals credentials and hijacks crypto wallets, forcing enterprises to rethink security training.
ClickFix is now the top infection vector for Macs, according to 9to5Mac’s Security Bite podcast. Here’s what devs and IT teams must do.
Australia’s ACSC warns of ClickFix attacks distributing Vidar Stealer malware, exposing sensitive information.