Loading…
Monday June 1, 2026 11:40am - 12:00pm PDT
ClickFix and FakeCaptcha attacks represent sophisticated social engineering tactics designed to deceive users into performing unintended actions, such as downloading malware or facilitating unauthorized transactions. By exploiting user trust through realistic CAPTCHA prompts or deceptive "click-to-fix" scenarios, attackers are able to bypass traditional security defenses, resulting in malware infections, data theft, or financial losses. 
 
This presentation provides a technical overview of current ClickFix and FakeCaptcha attack methodologies, including the novel “EtherHiding” technique. The talk will walk through analyses of real-world incidents, discuss the variations of FakeCaptcha attacks and outline various payloads as well as present indicators of compromise. Attendees will learn effective detection strategies, proactive prevention techniques leveraging threat intelligence, and practical steps organizations can implement to safeguard users against this evolving cyber threat.
Speakers
avatar for Greg Leah

Greg Leah

Founder, PrecisionSec
Greg Leah is the Founder of PrecisionSec, a Threat Intelligence startup based in Victoria, British Columbia. Drawing on nearly 20 years of experience in the security industry, Greg has gained a wide range of expertise ranging from reverse engineering and creating complex malware detections... Read More →
Monday June 1, 2026 11:40am - 12:00pm PDT
Track 5 - Room 1800
Share Modal

Share this link via

Or copy link