Back to Feed
Nation-stateSep 30, 2026

Russia's Star Blizzard Ditches ClickFix to Widen Phishing Net

Russia's Star Blizzard APT uses new RedFlick tactic for phishing attacks against Ukrainian targets.

Summary

Russian APT group Star Blizzard has adopted a new phishing tactic called 'RedFlick' to target Ukrainian-linked organizations, including NGOs, think tanks, and journalists. This new approach aims to deploy their CosmicPulse backdoor, marking a shift from their previous ClickFix tool.

Indicators of Compromise

  • malware — CosmicPulse

Entities

Star Blizzard (threat_actor)RedFlick (campaign)