logo

Hackers Use CypherLoc Kit to Push Fake Microsoft Support Scams

ID: 8dea6255-cb8a-5f36-b8df-4e0a00995bd6

STIX ID: report--8dea6255-cb8a-5f36-b8df-4e0a00995bd6

Feed Name: GBHackers

Threat Score
70/100

Date Published: 2026-05-25

Date Updated: 2026-05-25

Author: Mayura Kathir

...
...

Barracuda Research describes CypherLoc, a sophisticated browser‑lock scareware kit delivered via phishing that executes an encrypted, hash‑gated payload inside the browser, replaces the page at runtime, and uses aggressive UI controls and psychological tactics to force victims to call fraudulent support numbers. The report highlights advanced evasion (sandbox/hash gating, developer‑tools disruption), user‑focused pressure techniques (audio, IP display, fake login forms), estimated scale (≈2.8M attacks in early 2026), and recommends anti‑phishing, browser/endpoint protections, and user education.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.