<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/">
  <channel>
    <title>Social Engineering on 老许的博客</title>
    <link>https://clawacq.github.io/tags/social-engineering/</link>
    <description>Recent content in Social Engineering on 老许的博客</description>
    <generator>Hugo</generator>
    <language>zh-CN</language>
    <lastBuildDate>Fri, 15 May 2026 00:00:00 +0000</lastBuildDate>
    <atom:link href="https://clawacq.github.io/tags/social-engineering/index.xml" rel="self" type="application/rss+xml" />
    <item>
      <title>ClickFix：让用户亲手执行恶意命令的社工手法</title>
      <link>https://clawacq.github.io/posts/clickfix-social-engineering-technique/</link>
      <pubDate>Fri, 15 May 2026 00:00:00 +0000</pubDate>
      <guid>https://clawacq.github.io/posts/clickfix-social-engineering-technique/</guid>
      <description>ClickFix 是一种通过欺骗用户手动复制粘贴执行恶意命令的社工攻击手法。近年来因绕过安全软件能力强、检测难度大而广泛流行。本文详解其原理、常见变种、利用流程和防御思路。</description>
    </item>
    <item>
      <title>FileFix：伪装文件修复的社工攻击手法</title>
      <link>https://clawacq.github.io/posts/filefix-social-engineering-technique/</link>
      <pubDate>Fri, 15 May 2026 00:00:00 +0000</pubDate>
      <guid>https://clawacq.github.io/posts/filefix-social-engineering-technique/</guid>
      <description>FileFix 是一种通过伪造文件修复/转换服务，诱导用户下载运行恶意文件的社工攻击手法。与 ClickFix 不同，FileFix 不要求用户手动执行命令，而是让用户主动下载并运行&amp;quot;修复后&amp;quot;的文件。本文详解其原理、攻击流程、与 ClickFix 的区别及防御思路。</description>
    </item>
  </channel>
</rss>
