© 2026 Hashnode
Campaign Summary A Russian-speaking criminal group tracked by Cisco Talos as UAT-11795 has been running a continuous campaign since at least June 2025, distributing malware inside trojanized installer

Summary In mid-2026, three independent reports from Morphisec, BlueVoyant, and Huntress converged on the same point: ClickFix has stopped being a one-off social engineering trick and become the delive

When a “Critical” Zoom Patch Becomes a Credential Harvester A newly identified macOS malware family dubbed ClickFix has been linked to a North Korean state‑sponsored hacking unit. The campaign blends fabricated high‑salary job postings with counterfe...
