Cybercriminals impersonate CAPTCHAs to deliver malware. They exploit users’ familiarity with CAPTCHA by asking them to follow steps which include running a command prompt, opening a Run window, and launching a command. If the users blindly follow these instructions, a malicious script usually gets downloaded which can negatively impact their systems. To protect from this, never run scripts or commands from a CAPTCHA. If a user has executed a malicious command, they should disconnect from the internet, change passwords, and consider resetting their PC.

New KoiLoader Abuses Powershell Scripts to Deliver Malicious Payload
Researchers have uncovered a new strain of the advanced KoiLoader malware, believed to be distributed through phishing emails posing as bank statements. The malware employs