ClickFix Campaign Compromises 31 Orgs, Abuses Polygon Blockchain

2026-09-01T14:51:34Z7ff5165a27def9356a2b8335778bd8332d6b63068f43b155cf6a9ac4246755ae
CVE-2026-73570AI-securityAndroidClickFixEtherHidingICSLLM-poisoningOT-securityPowerShellZimbraadversary-in-the-middleagentic-AIbackdoorsblockchaincloud-securitycyber-espionageinfostealermalwarenation-statephishingransomwarerouterssession-theftthreat-intelligencevulnerability-exploitation

What happened

Dark Reading feed covering active cyber threats, vulnerability exploitation, malware campaigns, phishing and session theft, AI and agent security risks, OT/ICS exposure, nation-state activity, and defensive initiatives. Notable items include ClickFix and PowerShell campaigns, blockchain-backed command-and-control, infostealer and adversary-in-the-middle attacks, backdoored routers, Android malware, exploited Zimbra vulnerability CVE-2026-73570, and persistent risks from agentic AI systems.

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
darkreading
Record identifier
7ff5165a27def9356a2b8335778bd8332d6b63068f43b155cf6a9ac4246755ae
Enrichment time
2026-09-01T14:51:34Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.