SCMBANKER: A threat to bank customers in Mexico

Colleagues, I’d like to draw your attention to a cybersecurity alert.
SCMBANKER is a malware campaign targeting customers of Mexican banks, fintechs, payment services, and crypto exchanges.
The attack starts with a fake CAPTCHA. After the “check,” the victim is asked to paste a malicious command into Windows Run.
The malware then installs PowerShell tools, monitors banking sessions, hijacks clipboard data, and may deploy a RAT.
Why it matters: this scheme combines social engineering, clipboard hijacking, and remote access, creating a high risk of financial loss and credential theft.
I would strongly advise treating any request to run commands manually with caution. How do you verify such “CAPTCHAs” and fake updates?
#cybersecurity #malware #phishing #bankingfraud

