A new Russian loader-as-a-service named DOUBLECUP uses ClickFix attacks to conceal malicious code within PNG images cached by victims' browsers, ultimately delivering CountLoader malware to Windows and macOS devices and a new remote access trojan called DeviceManager to Windows systems.
A new Russian loader-as-a-service named DOUBLECUP uses ClickFix attacks to hide malicious code in PNG images cached by victims' browsers, ultimately delivering CountLoader to Windows and macOS devices and a new remote access trojan named DeviceManager to Windows systems. [...]