Exvicy ClickFix Malware-as-a-Service Copies ErrTraffic to Hijack WordPress Sites
New Exvicy MaaS uses compromised WordPress sites to deliver ClickFix lures mimicking Cloudflare Turnstile, assessed as a copycat of ErrTraffic.
A new Malware-as-a-Service (MaaS) platform named Exvicy is using compromised WordPress sites to deliver ClickFix lures. The lures mimic Cloudflare Turnstile verification pages to hijack users. Sekoia researchers assess with high confidence that Exvicy is a copycat of the ErrTraffic framework, reusing its JavaScript injection and C2 routines.
- Exvicy is a new MaaS platform using compromised WordPress sites.
- It delivers ClickFix lures disguised as Cloudflare Turnstile verification pages.
- Researchers assess it's a copycat of the established ErrTraffic framework.
A new Malware-as-a-Service platform, Exvicy, is actively abusing compromised WordPress websites to deliver ClickFix lures disguised as Cloudflare Turnstile verification pages. Researchers at Sekoia assess with high confidence that the service is a copycat of the established ErrTraffic framework, reusing its JavaScript injection logic, fake-verification code, and command-and-control communication routines The actor initially rented the […] The post Exvicy ClickFix Malware-as-a-Service Copies ErrTraffic to Hijack WordPress Sites appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
The full text could not be extracted from this site (paywall, bot protection or heavy scripting). Read it at gbhackers.com.