When you purchase through links on our site, we may earn an affiliate commission.Heres how it works.

Hackers have been seen abusingMicrosoftSharePoint to distribute the Havoc post-exploitation framework in a new ClickFix phishing attack.

This campaign is similar, although requires a bit more activity from the victims side.

A pair of hands using a keyboard

The attack chain starts with a phishing email, carrying a restricted notice as a .HTML attachment.

It offers features like in-memory execution, encrypted communication, and evasion techniques to bypass modern security defenses.

ClickFix has gotten insanely popular in these last couple of months.