CloudSEK’s TRIAD team uncovered an active development site deploying Clickfix-themed malware linked to the Epsilon Red ransomware. This variant deviates from traditional clipboard-based command injection tactics by directing victims to a secondary page on the same domain, where malicious shell commands are executed silently through ActiveXObject(>>WScript.Shell<<) to facilitate payload delivery. The script leverages Windows Command [...] The post Hackers Use Weaponized .HTA Files to Infect Victims with Red Ransomware appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform. First seen on gbhackers.com Jump to article: gbhackers.com/hackers-use-weaponized-hta-files-to-infect-victims/
![]()

