ClickFix Now Cybercriminals' Favorite Malware Delivery Technique
2026-06-30T14:52:16Z•8ee502dcd8076d96581284ad179fc4d36aa89965df2e2a672337cdf8573c7836
A12 A13AI-enabled attacksEDR bypassFortiBleedGPT-5.6MDM bypassMastraMillenium RATNorth KoreaRATSignalbootromcisco catalyst sd-wanexploit-in-the-wildinfostealermacOS vulnerabilityoperation endgameoracle peoplesoftphishingransomwaresupply-chain attackvulnerability managementzero-day
What happened
A broad set of active cyber threats and industry responses: multiple zero-days and pre-disclosure exploits (Oracle PeopleSoft, Cisco Catalyst SD‑WAN) have been observed in the wild, macOS vulnerabilities (including an XPC flaw enabling standard users to disable EDR/MDM and an unpatchable BootROM issue affecting A12/A13 devices) increase endpoint risk, and large-scale malware campaigns and supply‑chain incidents continue (Millenium RAT infecting ~62k devices, Mastra AI supply‑chain compromise attributed to North Korea, ransomware surge across Europe/UK SMEs). Law‑enforcement and industry taked‑
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- infosecurity_magazine
- Record identifier
- 8ee502dcd8076d96581284ad179fc4d36aa89965df2e2a672337cdf8573c7836
- Enrichment time
- 2026-06-30T14:52:16Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.