Now, even Russia's most elite hackers are using Clickfix to infect devices

The Russian state-sponsored hacking group Sandworm is now utilizing the 'Clickfix' social-engineering technique to compromise devices in Ukraine. This method involves tricking users into pasting malicious scripts into their terminals under the guise of a CAPTCHA verification.
Why it matters
The adoption of this technique by elite state actors demonstrates the evolving sophistication of malware delivery and the persistent threat to sensitive organizations.
IMMiTATION FLATTERY SOMETHING SOMETHING Now, even Russia’s most elite hackers are using Clickfix to infect devices The social-engineering technique has primarily been a tool of financially motivated criminals.
3 Credit: Getty Images Credit: Getty Images Text settings Story text Size Small Standard Large Width * Standard Wide Links Standard Orange * Subscribers only Learn more Minimize to nav One of the Russian government’s most elite hacking groups has adopted an attack, known as Clickfix, to compromise devices belonging to sensitive organizations in Ukraine, the latter country’s CERT center is warning.
Get smarter about the news
Sign up free for a feed built around what you actually care about, Dive Deeper research on any story, and the full text of every article.
Create free accountAlready have an account? Sign in