Nation-stateSep 30, 2026
Russia's Star Blizzard Ditches ClickFix to Widen Phishing Net
Russia's Star Blizzard APT uses new RedFlick tactic for phishing attacks against Ukrainian targets.
Summary
Russian APT group Star Blizzard has adopted a new phishing tactic called 'RedFlick' to target Ukrainian-linked organizations, including NGOs, think tanks, and journalists. This new approach aims to deploy their CosmicPulse backdoor, marking a shift from their previous ClickFix tool.
Indicators of Compromise
- malware — CosmicPulse
Entities
Star Blizzard (threat_actor)RedFlick (campaign)