A new version of the FileFix social engineering exploit circumvents security software by surreptitiously downloading a malicious ZIP file onto a victim’s computer via cache smuggling.
P4nd3m1cb0y, a cybersecurity researcher, was the first to notice the new phishing and social engineering threat, which poses as a “Fortinet VPN Compliance Checker” and released details about it on X.
Marcus Hutchins, a cybersecurity researcher, provides additional information about the attack’s mechanism in a recent paper published by cybersecurity firm Expel.
FileFix assaults, for those who are unfamiliar with them, are a variation of the ClickFix social engineering attack that was created by Mr. d0x. Rather of deceiving users into inputting harmful commands into operating system dialogs, it executes PowerShell scripts covertly via the Windows File Explorer address bar.
A website that seems to be a Fortinet VPN “Compliance Checker” prompts visitors to paste what appears to be a genuine network path read more about New FileFix attack uses cache smuggling to evade security software.
Get up to date on the latest cybersecurity news and enhance your knowledge of cybersecurity with our thorough coverage of the dangers, breaches, and solutions.
