ClosedLow impactAI Generated

Australia ACSC Warns of ClickFix Social Engineering Campaign Distributing Vidar Stealer – May 2026

Occurred 7 May 2026·Detected 10 May 2026·
🇦🇺 Australia (nationwide advisory)1 reportEnded 29 May 2026
CyberPropertyCyberCasualty & Liability

The Australian Cyber Security Centre (ACSC) has issued a warning about an ongoing malware campaign leveraging the ClickFix social engineering technique to distribute Vidar Stealer, an information-stealing malware. ClickFix typically tricks users into executing malicious commands by presenting fake error messages or CAPTCHA prompts. Vidar Stealer is capable of harvesting credentials, browser data, and cryptocurrency wallet information. Australian organisations have been advised to be vigilant against this threat.

AI-generated from linked source reports. See our correction policy.

Impact verdict

Low impact. LOW: Historical recalibration. The item has some risk relevance but no current concrete London Market loss pathway sufficient for Medium or High. No named insured loss estimate, major commercial asset damage, material closure, claims trigger, or pricing/capacity response is evidenced.

View assessment methodology

Premium discovery tier

Unlock analyst briefs, intelligence depth, and the revision timeline

Public pages show event facts and a short lead-in. Premium accounts unlock analyst briefs, deeper intelligence, loss context, and the full revision history for this event.

Start two-week trial

Affected countries

🇦🇺 Australia

Lloyd's classifications

Tracking this kind of risk? Get an email when Cyber events escalate.

Get alerts