> New DOUBLECUP ClickFix service hides malware in browser cache images
[AUTHOR: Lawrence Abrams]
[DATE: 03/08/2026 20:01]
[LANGUAGE: EN]
A new Russian loader-as-a-service named DOUBLECUP uses ClickFix attacks to hide malicious code in PNG images cached by victims' browsers, ultimately delivering CountLoader to Windows and macOS devices and a new remote access trojan named DeviceManager to Windows systems. [...]