Microsoft SharePoint that was hijacked to spread destruction of malware


  • Security researchers discovered a new clickfix campaign
  • The goal is to implement Havoc Post-utilization framework
  • The frame is hosting a Microsoft SharePoint account

Hackers have been watched abuse by Microsoft SharePoint to distribute Havoc Post-Exploitation Framework in a new clickfix phishing attack.

Cybersecurity scientists Fortiguard Labs, who have been tracking the campaign since last year, highlighted how Clickfix is ​​a type of scam that we probably all have encountered at least once. Cyber ​​criminals would hijack a site and create an overlay showing a false error message (for example: “Your browser is outdated and to see the contents of the web page you need to update it”). The false message will cause the victim to get actions that are usually completed by downloading and running malware or sharing sensitive information, such as passwords or banking data.

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top