ClickFix Campaign Uses EtherHiding and GULoader to Infect Windows Users via Fake CAPTCHA

A new cyberattack campaign is targeting Windows users through fake CAPTCHA pages, combining three techniques to slip past standard security defenses without raising alarms. The campaign, first observed in April 2026, begins on a compromised European small-business website and ends with an attempt to load GULoader, a memory-based malware downloader, onto a victim’s machine. What […]

The post ClickFix Campaign Uses EtherHiding and GULoader to Infect Windows Users via Fake CAPTCHA appeared first on Cyber Security News.

This article has been indexed from Cyber Security News

Read the original article: