Geo News
Community curated by people like you
LatestAICryptoHealthWorld AffairsUS Politics

Software supply chain attacks stories

Aug 7, 2026

ClickFix Malware Campaigns Evolve with Blockchain Infrastructure and Browser Fingerprinting to Evade Detection

Cybersecurity researchers have identified sophisticated evolution in ClickFix malware operations, including attackers using BNB Chain smart contracts to deliver attack instructions, browser fingerprinting to hide macOS malware lures, and a self-propagating npm worm called ChainDrop that infected over 400 packages downloaded hundreds of millions of times weekly.

Aug 7, 2026·6 sources
00

Top claims

  • ▪The ClickFix fingerprinting gate uses a 2.5 KB JavaScript profiler to collect browser, hardware, and runtime attributes from six objects: navigator, screen, window, document, location, and console.
  • ▪The ChainDrop worm targets the opensearch-project/opensearch-js repository specifically, using OpenID Connect tokens to publish a typosquatted dependency with valid signed Sigstore provenance.
  • ▪Microsoft Threat Intelligence tracked a macOS ClickFix campaign that evolved from openly serving malicious commands in HTML to concealing lures behind a server-side browser-fingerprinting gate.

Subtopics

Smart contracts1

Related timelines

AI Data Center Gold Rush

101 stories

Congress

108 stories

Crypto hacks

100 stories

Ebola outbreak

58 stories

Iran War

209 stories