{"id":1449026,"date":"2026-10-06T13:42:57","date_gmt":"2026-10-06T10:42:57","guid":{"rendered":"https:\/\/prm.ua\/i-am-not-a-robot-can-infect-your-computer-hackers-attacked-over-100-ukrainian-websites\/"},"modified":"2026-10-06T13:42:57","modified_gmt":"2026-10-06T10:42:57","slug":"i-am-not-a-robot-can-infect-your-computer-hackers-attacked-over-100-ukrainian-websites","status":"publish","type":"post","link":"https:\/\/prm.ua\/en\/i-am-not-a-robot-can-infect-your-computer-hackers-attacked-over-100-ukrainian-websites\/","title":{"rendered":"\u201cI am not a robot\u201d can infect your computer: hackers attacked over 100 Ukrainian websites"},"content":{"rendered":"<p><strong>In September, cyber experts discovered more than 100 compromised websites through which hackers are distributing malware. To infect computers, they use a fake &#8220;I&#8217;m not a robot&#8221; verification and convince people to manually execute a dangerous command.<\/strong><\/p>\n<p> This <a href=\"https:\/\/cip.gov.ua\/ua\/news\/ya-ne-robot-cert-ua-fiksuye-masove-poshirennya-shkidlivogo-programnogo-zabezpechennya-z-ponad-100-zlamanikh-vebsaitiv\" rel=\"nofollow noopener\" target=\"_blank\">was reported by<\/a> the CERT-UA team at the State Special Communications Service.<\/p>\n<p> The scheme works like this: a person visits a hacked website and sees a fake Cloudflare page. They are asked to complete a supposedly routine security check and perform certain actions on their computer.<\/p>\n<p> If the user agrees, malware is downloaded to their device, allowing attackers to gain access to personal data.<\/p>\n<p> According to CERT-UA, the attack targets Windows users who access infected sites through search engines. The malicious page is not displayed to every visitor.<\/p>\n<p> Experts warn: a real &#8220;I&#8217;m not a robot&#8221; check will never ask you to press Win+R, open a command prompt or PowerShell, and paste commands there. If a site asks you to do this, you should close it immediately.<\/p>\n<p> Once infected, the malware can install a fake browser extension called &#8220;Microsoft Office Word Editor.&#8221; It can steal logins, passwords, and browsing history, as well as give attackers access to your computer.<\/p>\n<p> CERT-UA advises not to execute incomprehensible commands requested by websites and not to install suspicious extensions. If a person has seen such a fake check or the site owner has detected signs of hacking, you can report it to CERT-UA at cert@cert.gov.ua.<\/p>\n<p> Also follow <strong>\u201cPryamim\u201d<\/strong> on <a href=\"https:\/\/www.facebook.com\/pryamiy\/\" target=\"_blank\" rel=\"nofollow noopener\">Facebook<\/a> , <a href=\"https:\/\/x.com\/prm_ua\" target=\"_blank\" rel=\"nofollow noopener\">X<\/a> , <a href=\"https:\/\/t.me\/+rtV4dxYu2_cyNjVi\" target=\"_blank\" rel=\"noopener nofollow\">Telegram<\/a> , and <a href=\"https:\/\/www.instagram.com\/pryamiy\/\" target=\"_blank\" rel=\"nofollow noopener\">Instagram.<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>In September, cyber experts discovered more than 100 compromised websites through which hackers are distributing malware. To infect computers, they use a fake &#8220;I&#8217;m not a robot&#8221; verification and convince people to manually execute a dangerous command. This was reported by the CERT-UA team at the State Special Communications Service. The scheme works like this: [&hellip;]<\/p>\n","protected":false},"author":59,"featured_media":1449008,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"ep_exclude_from_search":false,"footnotes":""},"categories":[76872,76878,76871],"class_list":["post-1449026","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-news-feed","category-society","category-news-2"],"_links":{"self":[{"href":"https:\/\/prm.ua\/en\/wp-json\/wp\/v2\/posts\/1449026","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/prm.ua\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/prm.ua\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/prm.ua\/en\/wp-json\/wp\/v2\/users\/59"}],"replies":[{"embeddable":true,"href":"https:\/\/prm.ua\/en\/wp-json\/wp\/v2\/comments?post=1449026"}],"version-history":[{"count":0,"href":"https:\/\/prm.ua\/en\/wp-json\/wp\/v2\/posts\/1449026\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/prm.ua\/en\/wp-json\/wp\/v2\/media\/1449008"}],"wp:attachment":[{"href":"https:\/\/prm.ua\/en\/wp-json\/wp\/v2\/media?parent=1449026"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/prm.ua\/en\/wp-json\/wp\/v2\/categories?post=1449026"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}