Security Weekly Podcast Network (Audio)
Security Weekly Podcast Network (Audio)

Breaking in with CrashFix, supply chain security, and CMMC phase 1 - David Zendzian, Anna Pham, Jacob Horne - ESW #449

Mar 09, 2026 · 1h 34m

<h3>Interview with Anna Pham</h3> <p><strong>Breaking in with ClickFix: Anatomy of a modern endpoint attack</strong></p> <p>Cybersecurity company Huntress just published a report on a new ClickFix variant they’ve discovered, which they’ve dubbed CrashFix. This technique was developed by KongTuke to serve as the primary lure within a new custom malicious browser extension also created by the group.</p> <p>In short, the team observed the threat actors using KongTuke’s malicious browser extension to display a fake security warning, claiming the browser had “stopped …

अस्मिन् प्रकरणे अद्यापि हस्तलिखितं नास्ति

STT.ai येन इदं प्रकरणं कृत्रिमबुद्धिद्वारा लिखितं भवति । वक्तृत्वबोधेन, समयसूचनानि, तथा बहुविधेषु फॉर्मेटेषु निर्यातेन च सटीकः पाठः प्राप्तः भवति ।

वक्तृ- पत्ता शब्द-स्तरीय-समय-चिह्नानि निर्यातं SRT, TXT, JSON रूपेण

अधिकं दृश्यम्