Russia's Star Blizzard Ditches ClickFix to Widen Phishing Net
Russian APT Star Blizzard replaced ClickFix with RedFlick phishing to deliver CosmicPulse against Ukraine-linked targets.
Dark Reading reports that Russian APT Star Blizzard has stopped using ClickFix and adopted a phishing tactic dubbed RedFlick. The activity targets Ukrainian-linked NGOs, think tanks, and journalists. The stated objective is deployment of the group's CosmicPulse backdoor. The available text does not include indicators, infrastructure, or a technical description of RedFlick.
- Star Blizzard replaced ClickFix with a tactic called RedFlick.
- Ukrainian-linked NGOs, think tanks, and journalists are targeted.
- The reported payload is the CosmicPulse backdoor.
The APT actor is using a new tactic, dubbed "RedFlick," against Ukrainian-linked targets such as NGOs, think tanks, and journalists to deploy its CosmicPulse backdoor.
The full text could not be extracted from this site (paywall, bot protection or heavy scripting). Read it at darkreading.com.