<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Hta — PoC Archive</title><link>https://poc.intelseclab.com/tags/hta/</link><description>Latest proof-of-concept entries.</description><generator>Hugo</generator><language>en-us</language><lastBuildDate>Mon, 27 Jul 2026 00:00:00 +0000</lastBuildDate><atom:link href="https://poc.intelseclab.com/tags/hta/index.xml" rel="self" type="application/rss+xml"/><item><title>ClickFix Fake reCAPTCHA to mshta/HTA Execution Chain</title><link>https://poc.intelseclab.com/pocs/social-engineering/2026-07-27_clickfix-recaptcha-phish-mshta-hta/</link><pubDate>Mon, 27 Jul 2026 00:00:00 +0000</pubDate><guid>https://poc.intelseclab.com/pocs/social-engineering/2026-07-27_clickfix-recaptcha-phish-mshta-hta/</guid><description>High severity — social-engineering · N/A (social-engineering technique, not a software vulnerability). Status: Weaponized (educational/benign demo payload). Affects: Human victim / Windows Run dialog (Win+R) or PowerShell/cmd, via mshta.exe. Tags: clickfix, fake-captcha, clipboard-injection, mshta, hta, social-engineering, phishing, run-dialog, recaptcha-impersonation.</description><category>social-engineering</category><category>High</category><category>clickfix</category><category>fake-captcha</category><category>clipboard-injection</category><category>mshta</category><category>hta</category><category>social-engineering</category><category>phishing</category><category>run-dialog</category><category>recaptcha-impersonation</category></item></channel></rss>