The National Cyber Security Directorate (NCSD) has reported that APT Lazarus uses the ClickFix technique, which combines phishing with malicious command execution, to compromise targets. This method exploits user trust through fake web pages and job offers, causing victims to run malicious PowerShell commands. DNSC recommends training users, restricting PowerShell execution, blocking malicious domains, and implementing multi-factor authentication to mitigate risk.
Sources
Alertă transmisă de DNSC: APT Lazarus, grup asociat Coreei de Nord, exploatează tehnica ClickFix pentru distribuirea de malware / Este o ameninţare serioasă
ALERTĂ DNSC: APT Lazarus exploatează tehnica ClickFix pentru distribuirea de malware
Alertă - un grup asociat Coreei de Nord exploatează tehnica ClickFix pentru distribuirea de malware
Avertisment DNSC: Un grup asociat Coreei de Nord distribuie malware care fură informații și poate instala programe periculoase
Grupul APT Lazarus, asociat Coreei de Nord, distribuie malware prin exploatarea tehnicii ClickFix
Latest News
22:57
Bogdan Ivan announces that the energy group number 4 at the Rovinari Power Plant has started to produce energy for the National Energy System.
22:45
Kanye West will hold two concerts in Saint Petersburg on October 10 and 11
22:33
Radu Miruță intervenes in the Metrorex debt crisis: "We will not have disconnection"
22:06
Marjorie Taylor Greene claims, without evidence, that Donald Trump discusses the use of nuclear weapons against Iran.
22:01
The Supreme Court of Russia rejected the appeal of the Yabloko party, the only Russian political party opposing the war in Ukraine, upholding the decision to exclude the party from the parliamentary elections.
See more news