As cited
Copy frozen at (site build).
threat intel
ClickFix Gets Creative: Malware Buried in Images
Huntress identified a campaign using ClickFix lures to deliver malware through steganography, with threat actors embedding infostealers such as LummaC2 and Rhadamanthys inside PNG images. The multi-stage attack chain demonstrates evolving evasion techniques to bypass traditional detection methods by hiding malicious payloads in image files.
Why it matters: Security teams and end users need to recognize that ClickFix social engineering remains active and increasingly sophisticated; practitioners should reinforce awareness training and monitor for steganographic indicators of compromise, as image-based malware delivery complicates standard file filtering.
- Source published
- First seen by Cybersecurity Tracker