Hackers Use TikTok Videos to Distribute Vidar and StealC Malware via ClickFix Technique: https://t.co/zk2GGJYopx by The Hacker News #infosec #cybersecurity #technology #news
Hackers are turning TikTok into a malware delivery tool. From ClickFix to fake Spotify "boosts"—hackers are now using AI-generated TikToks to trick users into running malicious commands. One video got 500K views before takedown. See full report → https://t.co/gyP22eQabx
TikTok & Instagram are being hit by attackers using malicious Python tools to exploit undocumented APIs. Wallarm Threat Research dives into how these tools mimic user behavior to bypass traditional defenses. 👉 https://t.co/t4qRSQGULN #APIsecurity #ThreatIntel #TikTok https://t.co/dyJy2syeR5
A new wave of cyberattacks is leveraging AI-generated TikTok videos to distribute malware, including infostealers like Vidar and StealC. These videos falsely promise free upgrades to premium services such as Spotify and Microsoft Windows, tricking users into installing malicious code that can spy on their computers. This tactic, known as "ClickFix," abuses CAPTCHA overlays to socially engineer users into self-infection and has been gaining traction over the past 8 to 12 months. One such video amassed 500,000 views before being removed. Additionally, a hacker group named ViciousTrap has compromised 5,300 Cisco routers across 84 countries by exploiting the CVE-2023-20118 vulnerability, deploying a script called NetGhost to create a global honeypot network for covert surveillance rather than attacks. Attackers are also targeting platforms like TikTok and Instagram using malicious Python tools to exploit undocumented APIs, mimicking user behavior to bypass traditional security defenses.