Cybersecurity company CTM360 has discovered a widespread cyber campaign named “ClickTok,” aimed at deceiving TikTok Shop users worldwide. Threat actors behind this operation have registered over 10,000 fake domains resembling official TikTok Shop platforms, including lookalikes of TikTok Mall and Wholesale. These malicious websites are used to conduct phishing attacks and distribute trojanized apps. By using AI-generated videos, impersonated influencer content, and fake advertisements on platforms like Facebook and TikTok, the attackers lure both consumers and affiliate program participants into downloading spyware or submitting sensitive login details. The goal of the campaign is to steal credentials, hijack accounts, and defraud users through cryptocurrency scams. Victims are tricked into depositing crypto, such as USDT, into fake wallets or installing modified TikTok apps that secretly run SparkKitty spyware. This malware gathers device information, harvests images, tracks user activity, and communicates with command-and-control servers to exfiltrate data. It operates across platforms and uses static C2 infrastructure, making detection possible but still effective in bypassing security on mobile devices, particularly through spoofed interfaces and misleading prompts. To protect against ClickTok and similar threats, users should avoid clicking on suspicious links, especially those offering discounts or affiliate opportunities related to TikTok. Always download apps from official stores and verify website URLs. Organizations should enhance domain monitoring, block known malicious domains, and educate users about phishing tactics. Using endpoint protection and threat intelligence tools can help detect spyware behaviors early and prevent sensitive data from being compromised.
Security researchers have identified a new variant of the SparkCat malware circulating on both the Apple App Store and Google Play Store, more than a year after its initial discove...
The European Union’s cybersecurity agency, CERT-EU, has attributed a significant cloud breach involving the European Commission to the TeamPCP threat group. The attack targeted t...
Microsoft has rolled out automatic updates for unmanaged Windows 11 24H2 Home and Pro edition devices to Windows 11 25H2, also known as the Windows 11 2025 Update. This transition ...