Skip to content

Attackers Using DNS TXT Records in ClickFix Script to Execute Powershell Commands

Cybersecuritynews Tushar Subhra Dutta February 5, 2026

The cybersecurity landscape has darkened with the sophisticated evolution of the KongTuke campaign. Active since mid-2025, this threat actor group has continuously refined its techniques to bypass conventional enterprise security filters. Their primary weapon remains the “ClickFix” strategy, a social engineering vector that deceives unsuspecting users into manually fixing simulated website errors. In these attacks, […]

Extracted Entities

APT Groups (1)

Attack Types (1)

Tools (1)