As cited
Citation snapshot as of .
threat intel
Sandworm hackers have a CAPTCHA trick for Ukrainians
Sandworm, a Russian state-sponsored hacking group, is distributing a malicious CAPTCHA that tricks Ukrainian users into executing a PowerShell command on their Windows systems. The fake verification appears legitimate but actually delivers malware when users follow the embedded instructions.
Why it matters: Ukrainian organizations and individuals are at direct risk of compromise through this social engineering attack; security teams should warn users to verify CAPTCHA legitimacy and avoid copying unfamiliar commands from web forms.
- Source published
- First seen by Cybersecurity Tracker