Cybersecurity researchers identified a new 'ClickFix' campaign where hackers use fake CAPTCHA prompts to trick users into installing malware that terminates 145 critical security processes.
Once executed, the malware, known as 'Cruciferra', effectively blinds endpoint detection and response (EDR) systems, leaving infected machines vulnerable to further data theft.
Experts advise users to avoid clicking on suspicious CAPTCHA verifications on unknown websites, as these are increasingly being used as a gateway for sophisticated cyberattacks.