ClickFix moves into the browser: Cryptocurrency theft with Google-hosted C2
BreachCisco Talos is tracking a cryptocurrency-stealing campaign that abuses the Google Visualization API for command and control (C2), retrieving obfuscated JavaScript from a publicly published Google Sheets document and injecting it into the victim's browser session.
Read full story at Talos Intelligence →