SECURITY·중요도 8·2026. 09. 21.·The Hacker News
ClickFix Lures Deploy ChainScript RAT Using Polygon to Rotate C2 Infrastructure
── KO ──────────────────
ClickFix를 이용한 ChainScript RAT 배포 및 C2 인프라 회전에 대한 소식입니다.
위험한 공격자들이 ClickFix와 유사한 유인책을 사용하여 ChainScript라는 새로운 원격 접근 트로jan(RAT)을 유포하고 있습니다. 이 RAT는 여러 이름으로 등장했으며, Spotify, Zoom Workplace, Microsoft Teams의 소프트웨어로 위장해 사용자들을 속이고 있습니다. 이는 보안 위협으로부터 경각심을 일깨우는 기회가 됩니다.
── EN ──────────────────
News on the delivery of ChainScript RAT using ClickFix-like lures and C2 infrastructure rotation.
Threat actors are utilizing ClickFix-like lures to distribute a new remote access trojan (RAT) called ChainScript. This RAT has appeared under various names, disguising itself as software like Spotify, Zoom Workplace, and Microsoft Teams. This situation emphasizes the need for heightened awareness regarding security threats.