Russia's Star Blizzard Ditches ClickFix to Widen Phishing Net

The Russian-linked advanced persistent threat (APT) group known as Star Blizzard has shifted its tactical approach in recent phishing campaigns. According to researchers at Dark Reading, the group has moved away from the 'ClickFix' social engineering technique in favor of a new method dubbed 'RedFlick.' This updated strategy is currently being deployed against targets with ties to Ukraine, including non-governmental organizations, think tanks, and journalists. The primary objective of these sophisticated phishing operations is to facilitate the delivery of the 'CosmicPulse' backdoor, which allows the threat actors to maintain persistent access to compromised systems. Security analysts note that this evolution in tactics demonstrates the group's ongoing efforts to refine its infiltration techniques and bypass traditional security filters. Organizations are advised to remain vigilant against these evolving phishing lures and to bolster their defensive measures to detect and block the deployment of the CosmicPulse malware.
This is a summary. Read the full article at the original source:
Dark ReadingRelated stories
In this article, Yandex information security expert Aidar Sabirov describes a technical solution for complying with legal requirements that mandate au…
Cloudflare has announced plans to provide quantum-safe TLS certificates, positioning itself as a leader in preparing internet infrastructure for the p…
A new security threat known as 'slopsquatting' is targeting developers who rely on AI assistants for coding tasks. Because LLMs frequently hallucinate…



