Tech News
← Home  ·  All topics

Cybercriminals

6 GoKawiil briefs on this topic

ClickFix social engineering attacks spread across Windows and macOS

Security researchers report that ClickFix-style attacks, which trick users into copying and running malicious commands via fake CAPTCHA pop-ups, are proliferating across both Windows and Mac systems. Researcher Kevin Beaumont notes victims are flooding Reddit for help, and attackers are now compromising legitimate websites to embed these prompts, making the scam harder to spot.

Google report: state-linked hackers now weaponize AI agents, not just chatbots

Google's threat intelligence team says cybercriminals and state-backed actors from China, Iran, and Russia are increasingly adopting autonomous AI agent systems rather than relying on simple prompt-and-response chatbots. These agents can independently execute multi-step tasks, expanding what threat actors can automate in their operations.

Chinese-language group hijacks Brazilian government servers for phishing network

Security researchers found that a Chinese-speaking threat actor has compromised Brazilian government and education websites, using them as a reverse-proxy network to funnel traffic to gambling-themed phishing sites. The attackers exploit the trust and infrastructure of official domains to disguise malicious traffic and evade detection.

Ex-Cybercriminal Warns AI Is Cutting Hackers' Attack Prep Time

Reformed cybercriminal Brett Johnson explains that generative AI tools now let attackers plan and execute fraud schemes far faster than before, compressing what once took days into hours. He describes AI's biggest value to threat actors as accelerating research, content creation, and social engineering rather than inventing new attack types.

Interisle research: up to 20% of new gTLD domains in 2025 tied to criminal registrants

A study by Interisle Consulting Group found that at least 10% of new generic top-level domain registrations in 2025 had already turned up on security blocklists, with the true share of malicious registrations potentially reaching 20% once related but unlisted domains are counted. Interisle's Greg Aaron and Karen Rose presented these figures at the ICANN 86 Policy Forum, citing ICANN's own research that for every three blocklisted domains, two associated ones often go undetected. ICANN's Office of the CTO has since pushed back somewhat, arguing the numbers hinge heavily on how 'abuse' is defined.

Fake GTA VI demo sites are spreading password-stealing malware

Cybersecurity firm Malwarebytes has identified fake websites posing as Rockstar Games that promise a playable Grand Theft Auto VI demo, which doesn't actually exist. Clicking the 'Play Now' button on these sites downloads an information-stealing malware disguised as a game installer, rather than any game files.