Microsoft flags ClickFix malware using BNB Chain to fetch attack instructions
first published 2026-08-06T20:26:21Z
Microsoft Threat Intelligence reports that attackers compromised legitimate websites, injected JavaScript, and used EtherHiding to fetch malware payloads from a BNB Smart Chain smart contract. The campaign uses fake CAPTCHA prompts and abused Windows tools to deliver malware including Lumma Stealer, XWorm, AsyncRAT, and MintsLoader, raising risks of credential theft and ransomware.
AI Analysis
The summary describes an active malware campaign that uses BNB Smart Chain to hide payloads and deliver credential-stealing malware and ransomware-related threats. This is negative for BNB Chain activity and security, and the concrete threat report could pressure sentiment in the short term.
Expected Investor Sentiment: Bearish
Potential Market Impact: Significant