← Back to blog

Hacked Ukrainian Sites Serve Fake Cloudflare ClickFix Lures for Psychedelic Stealer

Cybercriminals have found a tricky new way to infect computers by compromising legitimate websites in Ukraine to display fake security warnings. When unsuspecting visitors land on these hacked pages, a convincing pop-up pretending to be Cloudflare claims there is a browser error that needs fixing. The message instructs the user to copy and run a piece of computer code to solve the problem. Unfortunately, following these steps actually downloads a dangerous information-stealing malware designed to quietly swipe your saved passwords, cryptocurrency wallets, and personal data.

This scheme highlights how scammers use fake technical emergencies to panic people into making bad security decisions. While this particular attack starts on compromised websites, similar psychological tricks are frequently delivered straight to your inbox through deceptive phishing emails. Attackers often impersonate popular tech services, banks, or delivery companies to make you panic and click malicious links or download dangerous attachments without thinking twice.

Whenever you receive an unexpected or alarming message and you are unsure if it is safe, it is always best to verify before you click. You can forward any suspicious email to scan at report.mailforensis.com to get a clear, plain-English threat analysis back in seconds, helping you avoid hidden traps and keep your personal information secure.

Got a suspicious email?

Forward it to scan@report.mailforensis.com and get a clear answer in seconds — free.

Try MailForensis free →