Tag

#powershell

6 stories taggedpowershell.

16:9 editorial photograph, full-frame edge-to-edge, of a hotel front-desk computer monitor glowing in a dimly lit reception area at night, the screen displaying
Threat Intelligence

Hackers Hide Malware Instructions in FTP Server Greetings

A quiet trick spotted by SOCRadar uses FTP welcome messages to smuggle commands onto Windows machines, dropping two new remote-control tools called E4del and PINHOLE.

4 min read
Full-frame edge-to-edge photoreal shot of a darkened office monitor displaying a generic fake CAPTCHA verification page reflected in a glass surface, with faint
Threat Intelligence

ClickFix: The Fake Error Pop-Up That Tricks You Into Hacking Yourself

A scam that launched in 2024 has grown into a thriving criminal marketplace. Researchers say standard antivirus tools are missing it almost entirely, and they have built a new detection method to fill the gap.

3 min read
Full-frame photoreal editorial shot of a dark server room with a single glowing monitor in the middle distance displaying faint blue Windows-style directory lis
Threat Intelligence

Attacker Uses AI-Written PowerShell Script to Map a Company's Network

Researchers say an unknown intruder ran a script that looks machine-generated to catalogue users, computers and domain controllers inside a Windows network.

3 min read
Full frame photoreal editorial image of a laptop screen showing a generic blurred verification prompt with a checkbox, warm desk lamp light, a Mexican peso coin
Threat Intelligence

Fake CAPTCHA Pages Are Stealing From Mexican Bank Customers

Elastic Security Labs is tracking a fraud campaign, dubbed REF6045, that tricks people into pasting a malicious command from a bogus 'prove you're human' page.

3 min read
Threat Intelligence

ClickFix Grows a Back Office: API-Served Payloads and a New AMSI Bypass

Researchers pulled roughly 3,000 live payloads from ClickFix infrastructure and found a polymorphic delivery pipeline built to defeat Windows script scanning.

2 min read
Threat Intelligence

ClickFix Campaign Turns Google Ads, GitLab, and Claude Into a Six-Wave Trust Machine

Attackers chained legitimate infrastructure across seven weeks to push malicious PowerShell commands to developers. Session tokens, SSH keys, and cloud credentials were the prize.

3 min read
© 2026 Threat Vectr