ClickFix Campaign Compromises 31 Orgs, Abuses Polygon Blockchain
2026-09-01T14:51:34Z•7ff5165a27def9356a2b8335778bd8332d6b63068f43b155cf6a9ac4246755ae
CVE-2026-73570AI-securityAndroidClickFixEtherHidingICSLLM-poisoningOT-securityPowerShellZimbraadversary-in-the-middleagentic-AIbackdoorsblockchaincloud-securitycyber-espionageinfostealermalwarenation-statephishingransomwarerouterssession-theftthreat-intelligencevulnerability-exploitation
What happened
Dark Reading feed covering active cyber threats, vulnerability exploitation, malware campaigns, phishing and session theft, AI and agent security risks, OT/ICS exposure, nation-state activity, and defensive initiatives. Notable items include ClickFix and PowerShell campaigns, blockchain-backed command-and-control, infostealer and adversary-in-the-middle attacks, backdoored routers, Android malware, exploited Zimbra vulnerability CVE-2026-73570, and persistent risks from agentic AI systems.
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- darkreading
- Record identifier
- 7ff5165a27def9356a2b8335778bd8332d6b63068f43b155cf6a9ac4246755ae
- Enrichment time
- 2026-09-01T14:51:34Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.