Actors sponsored by the state identified using the clickfix hacking tool developed by criminals


  • Proofpoint indicates that several groups sponsored by the state seen using the clickfix attack technique
  • Russians, North Koreans and Iranians are all involved
  • The actors sponsored by the State are mainly engaged in cyber-espionage

The clickfix attack technique has become so popular that even actors in the threat sponsored by the state use it, research of proofpoint affirmations, having observed at least three groups taking advantage of the method in the last quarter of 2024.

In a detailed report, Proofpoint said he saw Kimsuky, Muddywater, UNK_REMOTEROGUE and APT28, all using Clickfix in their attack chains.

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top