A cyber-espionage group known as UAC-0050 has used the ClickFix technique to launch a phishing campaign in Ukraine. Using fake notifications about shared documents, users were directed to a malicious site which used reCAPTCHA Phish and ClickFix to trick individuals into running PowerShell as part of a CAPTCHA challenge, deploying an information stealer named Lucky Volunteer.

Phishing with style! Cybercriminals attach superhero GIFs to malware. – Red Hot Cyber
Phishing with style! Cybercriminals attach superhero GIFs to malware. Red Hot Cyber