4.9 • 696 Ratings
🗓️ 19 October 2025
⏱️ 6 minutes
🧾️ Download transcript
Click on a timestamp to play from that location
| 0:00.0 | Hello and welcome to the Monday, October 20th, 20th, |
| 0:07.0 | 20th, 205 edition of the Sands International Storm Center's Stormcast. |
| 0:11.6 | My name is Johannes Ulrich, recording today from Jacksonville, Florida. |
| 0:16.7 | And this episode is brought you by the sands.edu graduate certificate program in cybersecurity engineering. |
| 0:24.4 | TikTok apparently has learned from ClickFix. |
| 0:27.3 | Xavier came across a TikTok video that advertised ways to get Photoshop for free. |
| 0:35.3 | But of course, instead of getting free versions of expensive software, |
| 0:40.7 | you're actually stuck with Mather. |
| 0:43.4 | The technique used here is very similar to what's commonly used as clickfix, |
| 0:48.5 | where you're being prompted with a captcha, |
| 0:51.7 | and then you have to essentially copy paste power shell code into your |
| 0:55.9 | power shell window on your windows machine. Well, here the difference is only that it's done via |
| 1:01.8 | TikTok. So the TikTok video basically tells you how to copy or how to type the power shell script |
| 1:09.4 | into your PowerShell window, |
| 1:12.1 | that of course you're first being instructed to start as an administrator, |
| 1:16.6 | and then, well, the malicious code is executed. |
| 1:20.1 | In this code, additional malware is being downloaded |
| 1:23.6 | that will then essentially download InfoSte stealers or whatever the attacker would like |
| 1:29.2 | to load on your system. |
| 1:31.0 | Good news is that virus total promises a good recognition rate for at least this particular |
| 1:38.9 | version of this scam, but there are hundreds literally out there that do similar things that, again, no promise |
| 1:47.7 | free software, but then trick you into actually executing this PowerShell code. And it's not always |
... |
Please login to see the full transcript.
Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.
Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.
Copyright © Tapesearch 2025.