Fake Windows update blue screen used by the JackFix ClickFix attack to trick users into running malware from the Windows Run dialog

How the JackFix attack upgrades ClickFix social engineering

The JackFix attack marks the latest evolution of the ClickFix technique. By luring victims through fake adult sites into a full-screen Windows update screen, encoding Run-dialog commands, gating its payload URL, and dropping multiple infostealers through an obfuscated PowerShell script, JackFix sidesteps many earlier ClickFix mitigations and forces defenders to rethink how they handle browser-driven social engineering.

Read More
Concept image showing SilentButDeadly cutting network connections between EDR and AV agents and their cloud management console while the agents still appear active.

SilentButDeadly Explained: User-Mode EDR Neutralization

SilentButDeadly is an open-source Windows tool that neutralizes EDR and AV visibility by cutting their cloud communications with Windows Filtering Platform filters instead of killing the agents. This article unpacks how SilentButDeadly discovers security processes, applies process-specific network blocks, disrupts services, and what defenders should monitor to detect and withstand similar EDR neutralization techniques.

Read More