The National Cyber Security Directorate (NCSD) has reported that APT Lazarus uses the ClickFix technique, which combines phishing with malicious command execution, to compromise targets. This method exploits user trust through fake web pages and job offers, causing victims to run malicious PowerShell commands. DNSC recommends training users, restricting PowerShell execution, blocking malicious domains, and implementing multi-factor authentication to mitigate risk.
Sources
Alertă transmisă de DNSC: APT Lazarus, grup asociat Coreei de Nord, exploatează tehnica ClickFix pentru distribuirea de malware / Este o ameninţare serioasă
ALERTĂ DNSC: APT Lazarus exploatează tehnica ClickFix pentru distribuirea de malware
Alertă - un grup asociat Coreei de Nord exploatează tehnica ClickFix pentru distribuirea de malware
Avertisment DNSC: Un grup asociat Coreei de Nord distribuie malware care fură informații și poate instala programe periculoase
Grupul APT Lazarus, asociat Coreei de Nord, distribuie malware prin exploatarea tehnicii ClickFix
Latest News
23:17
FCSB, a victory without emotions against FK Csikszereda in the second round of the Superliga
23:03
Cristian Diaconescu, after the incidents with the drones: "We must show, on one hand, firmness and, on the other hand, balance, so as not to fuel an escalation that the aggressor desires."
22:38
The suspect in the Berlin Pride attack was shot dead during a police operation.
22:13
Radu Miruță: "Romania is starting to see the indirect consequences of this war more and more often / A few hundred meters away from the borders of Romania, it smells of gunpowder and people are dying"
22:01
Traian Băsescu, about the downed drones: "Tests the response capacity / If things evolve and surpass us, in the first phase NATO must be convened under Article 4"
See more news