SmartApeSG Leverages ClickFix Flaw to Distribute Remcos RAT
Security teams have identified that the SmartApeSG group is exploiting an unpatched vulnerability in the ClickFix update framework to serve the Remcos remote‑access trojan. Attackers compromise legitimate‑looking software‑update pages, inject malicious JavaScript, and redirect visitors to a payload hosted on the abused ClickFix infrastructure. The payload is