The KongTuke group is actively deploying modeloRAT malware through compromised WordPress sites, utilizing fake CAPTCHA lures for initial access. This campaign continues alongside their newer CrashFix technique, posing a…
2 articles · Updated March 10, 2026
Recent Intelligence Reports
Through the Lens of MDR: Analysis of KongTuke's ClickFix Abuse of Compromised WordPress Sites— Trendmicro · March 10, 2026