chiprook
← Security
SecuritySeptember 21, 2026, 21:30

Sekoia uncovers Exvicy, a new ClickFix MaaS built on ErrTraffic code

Sekoia's threat research team detailed Exvicy, a ClickFix malware-as-a-service framework that injects obfuscated JavaScript into compromised WordPress sites and lures victims into running PowerShell via Win+R. The Russian-speaking operator has sold it on Exploit.IN since May 26, raising the price from $1,200 to $2,000 a month, with roughly 80 panel-hosting servers found by late August.

Sekoia uncovers Exvicy, a new ClickFix MaaS built on ErrTraffic code
#Sekoia#WordPress#Cloudflare#PowerShell
Read next
Security

Cyberattack hits University of Munich, student data at risk

Security

TASK#STOMP Windows backdoor steals documents, Wi-Fi passwords and screenshots

Security

CVE-2026-81657 in IBM Guardium: deserialization flaw rated 9.8

Security

ShinyHunters hijacks Cl0p ransomware site, demands extortion payment