{"id":11968,"date":"2026-08-13T12:11:32","date_gmt":"2026-08-13T18:11:32","guid":{"rendered":"https:\/\/beaconlab.us\/publicacion\/alert-2026-88-clickfix-campaign-targeting-mexican-users\/"},"modified":"2026-09-29T10:59:09","modified_gmt":"2026-09-29T16:59:09","slug":"alert-2026-88-clickfix-campaign-targeting-mexican-users","status":"publish","type":"publicacion","link":"https:\/\/beaconlab.us\/en\/publication\/alert-2026-88-clickfix-campaign-targeting-mexican-users\/","title":{"rendered":"Alert 2026-88 ClickFix Campaign targeting Mexican users"},"content":{"rendered":"\n<h2 class=\"wp-block-heading\">Description<\/h2>\n\n<p class=\"wp-block-paragraph\">A <strong>phishing and social engineering<\/strong> campaign targeting users in Mexico has been identified, using a supposed <strong>\u201cpayment receipt\u201d<\/strong> and documentation that appears to be related to the <strong>Tax Administration Service (SAT)<\/strong> as bait.<\/p>\n\n<p class=\"wp-block-paragraph\">According to the observed flow and the information provided for this bulletin, the victim receives an email from an <strong>external address belonging to the Gmail domain<\/strong>, using the subject:<\/p>\n\n<p class=\"wp-block-paragraph\"><strong>\u201cpayment receipt\u201d<\/strong><\/p>\n\n<p class=\"wp-block-paragraph\">The message contains as an attachment a <strong>protected PDF document<\/strong>, designed to appear as legitimate documentation related to the SAT.<\/p>\n\n<p class=\"wp-block-paragraph\">The PDF protection, the tax-related theme, and the institutional appearance of the document seek to increase the credibility of the message and generate enough trust for the victim to continue with the instructions presented.<\/p>\n\n<p class=\"wp-block-paragraph\">When interacting with the content or with the mechanism included in the document, the victim is led to the next stage of the attack, where a social engineering chain known as <strong>ClickFix<\/strong> begins.<\/p>\n\n<p class=\"wp-block-paragraph\">Unlike traditional attacks that directly exploit a technical vulnerability in the operating system, <strong>ClickFix uses the user themselves to execute the malicious instructions<\/strong>.<\/p>\n\n<p class=\"wp-block-paragraph\"><strong>ClickFix<\/strong> is a social engineering technique by which attackers manipulate users into manually executing malicious commands on their own system.<\/p>\n\n<p class=\"wp-block-paragraph\">Publicly documented ClickFix campaigns have been used to distribute malware such as <strong>Lumma Stealer, Latrodectus, NetSupport RAT, and DarkGate<\/strong>, demonstrating that this technique primarily works as a delivery and initial execution mechanism; the final payload may vary depending on the attacker.<\/p>\n\n<p class=\"wp-block-paragraph\">It all starts with an email like this &#8220;Payment receipt&#8221;, supposedly from the SAT.<\/p>\n\n<figure class=\"wp-block-image size-full\"><img fetchpriority=\"high\" decoding=\"async\" width=\"469\" height=\"161\" src=\"https:\/\/beaconlab.us\/wp-content\/uploads\/2026\/08\/image.jpg\" alt=\"\" class=\"wp-image-11678\" srcset=\"https:\/\/beaconlab.us\/wp-content\/uploads\/2026\/08\/image.jpg 469w, https:\/\/beaconlab.us\/wp-content\/uploads\/2026\/08\/image-300x103.jpg 300w\" sizes=\"(max-width: 469px) 100vw, 469px\" \/><\/figure>\n\n<p class=\"wp-block-paragraph\">When the user downloads and opens the attached PDF file, it forces the user to click the &#8220;Unlock&#8221; button<\/p>\n\n<figure class=\"wp-block-image size-full\"><img decoding=\"async\" width=\"164\" height=\"211\" src=\"https:\/\/beaconlab.us\/wp-content\/uploads\/2026\/08\/image-1.jpg\" alt=\"\" class=\"wp-image-11679\" \/><\/figure>\n\n<p class=\"wp-block-paragraph\">When the user clicks, they are sent to the Government of Tlaquepaque page and there a vulnerability is automatically exploited. This vulnerability sends the user back to another page compromised by the attacker. This page is not from the government, but it is a Mexican site. On that page, another &#8220;program&#8221; is executed; what you see in the image is the program&#8217;s code. This program functions as a police officer; before moving to the second step, it performs a check.<\/p>\n\n<p class=\"wp-block-paragraph\">First, it analyzes whether the victim is a program such as an antivirus or programs that exist on the internet that can detect this type of threat. &#8211; Then it validates whether the victim uses Windows; if the victim does not use Windows, it shows this screen. This indicates that this attack only works for Windows users. If it is macOS, for example, it shows this screen and the attack ends.<\/p>\n\n<figure class=\"wp-block-image size-full\"><img decoding=\"async\" width=\"469\" height=\"270\" src=\"https:\/\/beaconlab.us\/wp-content\/uploads\/2026\/08\/image-2.jpg\" alt=\"\" class=\"wp-image-11680\" srcset=\"https:\/\/beaconlab.us\/wp-content\/uploads\/2026\/08\/image-2.jpg 469w, https:\/\/beaconlab.us\/wp-content\/uploads\/2026\/08\/image-2-300x173.jpg 300w\" sizes=\"(max-width: 469px) 100vw, 469px\" \/><\/figure>\n\n<p class=\"wp-block-paragraph\">If the victim&#8217;s computer is Windows, it detects the victim&#8217;s IP address and sends it to the attackers; if the IP is from Mexico, it sends the message: &#8220;\ud83e\udde8*WINDOWS REAL* \ud83e\udde8 \u2014 Premium target&#8221;. It also sends the computer&#8217;s time zone to the attacker. According to the message and the code of the message it sends, we can determine that the attacker uses Telegram or WhatsApp to receive these messages. to arbitrary locations of the host system using the privileges of the user or process that executed docker cp.<\/p>\n\n<h2 class=\"wp-block-heading\">Solution<\/h2>\n\n<p class=\"wp-block-paragraph\">Users and administrators should perform the following actions:<\/p>\n\n<ul class=\"wp-block-list\">\n<li>Do not open unexpected PDF files related to supposed payment receipts.<\/li>\n\n\n\n<li>Be wary of emails from external accounts claiming to represent the SAT.<\/li>\n\n\n\n<li>Validate any tax-related communication directly through the official SAT portals.<\/li>\n\n\n\n<li>Do not execute instructions that request using Windows + R.<\/li>\n\n\n\n<li>Do not paste commands provided by unknown websites into PowerShell, CMD, or Windows Terminal.<\/li>\n<\/ul>\n\n<h2 class=\"wp-block-heading\">Additional information:<\/h2>\n\n<ul class=\"wp-block-list\">\n<li><a href=\"https:\/\/x.com\/hiramcoop\/status\/2087383946782728585?s=46\">Original publication shared on X \u2013 @hiramcoop<\/a><\/li>\n\n\n\n<li><a href=\"https:\/\/www.microsoft.com\/en-us\/security\/blog\/2025\/08\/21\/think-before-you-clickfix-analyzing-the-clickfix-social-engineering-technique\/\">Microsoft Threat Intelligence \u2013 Think before you Click(Fix): Analyzing the ClickFix social engineering technique<\/a><\/li>\n\n\n\n<li><a href=\"https:\/\/unit42.paloaltonetworks.com\/preventing-clickfix-attack-vector\/\">Palo Alto Networks Unit 42 \u2013 Fix the Click: Preventing the ClickFix Attack Vector<\/a><\/li>\n\n\n\n<li><a href=\"https:\/\/r3d.mx\/2024\/02\/23\/cuidado-circula-campana-de-phishing-en-correos-que-suplantan-al-sat\/\">R3D \u2013 Phishing campaigns impersonating the SAT through PDF documents<\/a><\/li>\n<\/ul>\n\n<p class=\"wp-block-paragraph\"><\/p>\n","protected":false},"featured_media":0,"template":"","class_list":["post-11968","publicacion","type-publicacion","status-publish","hentry"],"acf":[],"aioseo_notices":[],"aioseo_head":"\n\t\t<!-- All in One SEO 5.0.1.1 - aioseo.com -->\n\t<meta name=\"description\" content=\"Description A phishing and social engineering campaign targeting users in Mexico has been identified, using a supposed \u201cpayment receipt\u201d and documentation that appears to be related to the Tax Administration Service (SAT) as bait. According to the observed flow and the information provided for this bulletin, the victim receives an email from an external address\" \/>\n\t<meta name=\"robots\" content=\"max-image-preview:large\" \/>\n\t<link rel=\"canonical\" href=\"https:\/\/beaconlab.us\/en\/publication\/alert-2026-88-clickfix-campaign-targeting-mexican-users\/\" \/>\n\t<meta name=\"generator\" content=\"All in One SEO (AIOSEO) 5.0.1.1\" \/>\n\t\t<meta property=\"og:locale\" content=\"en_US\" \/>\n\t\t<meta property=\"og:site_name\" content=\"Beacon Lab - CSIRT by Cybolt\" \/>\n\t\t<meta property=\"og:type\" content=\"article\" \/>\n\t\t<meta property=\"og:title\" content=\"Alert 2026-88 ClickFix Campaign targeting Mexican users - Beacon Lab\" \/>\n\t\t<meta property=\"og:description\" content=\"Description A phishing and social engineering campaign targeting users in Mexico has been identified, using a supposed \u201cpayment receipt\u201d and documentation that appears to be related to the Tax Administration Service (SAT) as bait. According to the observed flow and the information provided for this bulletin, the victim receives an email from an external address\" \/>\n\t\t<meta property=\"og:url\" content=\"https:\/\/beaconlab.us\/en\/publication\/alert-2026-88-clickfix-campaign-targeting-mexican-users\/\" \/>\n\t\t<meta property=\"og:image\" content=\"https:\/\/beaconlab.mx\/wp-content\/uploads\/2023\/12\/BeaconLab_V2-03.png\" \/>\n\t\t<meta property=\"og:image:secure_url\" content=\"https:\/\/beaconlab.mx\/wp-content\/uploads\/2023\/12\/BeaconLab_V2-03.png\" \/>\n\t\t<meta property=\"article:published_time\" content=\"2026-08-13T18:11:32+00:00\" \/>\n\t\t<meta property=\"article:modified_time\" content=\"2026-09-29T16:59:09+00:00\" \/>\n\t\t<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n\t\t<meta name=\"twitter:site\" content=\"@BeaconLabMX\" \/>\n\t\t<meta name=\"twitter:title\" content=\"Alert 2026-88 ClickFix Campaign targeting Mexican users - Beacon Lab\" \/>\n\t\t<meta name=\"twitter:description\" content=\"Description A phishing and social engineering campaign targeting users in Mexico has been identified, using a supposed \u201cpayment receipt\u201d and documentation that appears to be related to the Tax Administration Service (SAT) as bait. According to the observed flow and the information provided for this bulletin, the victim receives an email from an external address\" \/>\n\t\t<meta name=\"twitter:image\" content=\"https:\/\/beaconlab.mx\/wp-content\/uploads\/2023\/12\/BeaconLab_V2-03.png\" \/>\n\t\t<script type=\"application\/ld+json\" class=\"aioseo-schema\">\n\t\t\t{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/beaconlab.us\\\/en\\\/publication\\\/alert-2026-88-clickfix-campaign-targeting-mexican-users\\\/#breadcrumblist\",\"itemListElement\":[{\"@type\":\"ListItem\",\"@id\":\"https:\\\/\\\/beaconlab.us\\\/en\\\/#listItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/beaconlab.us\\\/en\\\/\",\"nextItem\":{\"@type\":\"ListItem\",\"@id\":\"https:\\\/\\\/beaconlab.us\\\/en\\\/publication\\\/alert-2026-88-clickfix-campaign-targeting-mexican-users\\\/#listItem\",\"name\":\"Alert 2026-88 ClickFix Campaign targeting Mexican users\"}},{\"@type\":\"ListItem\",\"@id\":\"https:\\\/\\\/beaconlab.us\\\/en\\\/publication\\\/alert-2026-88-clickfix-campaign-targeting-mexican-users\\\/#listItem\",\"position\":2,\"name\":\"Alert 2026-88 ClickFix Campaign targeting Mexican users\",\"previousItem\":{\"@type\":\"ListItem\",\"@id\":\"https:\\\/\\\/beaconlab.us\\\/en\\\/#listItem\",\"name\":\"Home\"}}]},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/beaconlab.us\\\/en\\\/#organization\",\"name\":\"Beacon Lab\",\"description\":\"CSIRT by Cybolt\",\"url\":\"https:\\\/\\\/beaconlab.us\\\/en\\\/\",\"telephone\":\"+528007374357\",\"logo\":{\"@type\":\"ImageObject\",\"url\":\"https:\\\/\\\/beaconlab.mx\\\/wp-content\\\/uploads\\\/2023\\\/12\\\/BeaconLab_V2-03.png\",\"@id\":\"https:\\\/\\\/beaconlab.us\\\/en\\\/publication\\\/alert-2026-88-clickfix-campaign-targeting-mexican-users\\\/#organizationLogo\"},\"image\":{\"@id\":\"https:\\\/\\\/beaconlab.us\\\/en\\\/publication\\\/alert-2026-88-clickfix-campaign-targeting-mexican-users\\\/#organizationLogo\"},\"sameAs\":[\"https:\\\/\\\/twitter.com\\\/BeaconLabMX\",\"https:\\\/\\\/www.linkedin.com\\\/showcase\\\/beaconlabmx\"]},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/beaconlab.us\\\/en\\\/publication\\\/alert-2026-88-clickfix-campaign-targeting-mexican-users\\\/#webpage\",\"url\":\"https:\\\/\\\/beaconlab.us\\\/en\\\/publication\\\/alert-2026-88-clickfix-campaign-targeting-mexican-users\\\/\",\"name\":\"Alert 2026-88 ClickFix Campaign targeting Mexican users - Beacon Lab\",\"description\":\"Description A phishing and social engineering campaign targeting users in Mexico has been identified, using a supposed \\u201cpayment receipt\\u201d and documentation that appears to be related to the Tax Administration Service (SAT) as bait. According to the observed flow and the information provided for this bulletin, the victim receives an email from an external address\",\"inLanguage\":\"en-US\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/beaconlab.us\\\/en\\\/#website\"},\"breadcrumb\":{\"@id\":\"https:\\\/\\\/beaconlab.us\\\/en\\\/publication\\\/alert-2026-88-clickfix-campaign-targeting-mexican-users\\\/#breadcrumblist\"},\"datePublished\":\"2026-08-13T12:11:32-06:00\",\"dateModified\":\"2026-09-29T10:59:09-06:00\"},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/beaconlab.us\\\/en\\\/#website\",\"url\":\"https:\\\/\\\/beaconlab.us\\\/en\\\/\",\"name\":\"Beacon Lab\",\"description\":\"CSIRT by Cybolt\",\"inLanguage\":\"en-US\",\"publisher\":{\"@id\":\"https:\\\/\\\/beaconlab.us\\\/en\\\/#organization\"}}]}\n\t\t<\/script>\n\t\t<!-- All in One SEO -->\n\n","aioseo_head_json":{"title":"Alert 2026-88 ClickFix Campaign targeting Mexican users - Beacon Lab","description":"Description A phishing and social engineering campaign targeting users in Mexico has been identified, using a supposed \u201cpayment receipt\u201d and documentation that appears to be related to the Tax Administration Service (SAT) as bait. According to the observed flow and the information provided for this bulletin, the victim receives an email from an external address","canonical_url":"https:\/\/beaconlab.us\/en\/publication\/alert-2026-88-clickfix-campaign-targeting-mexican-users\/","robots":"max-image-preview:large","keywords":"","webmasterTools":{"miscellaneous":""},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"BreadcrumbList","@id":"https:\/\/beaconlab.us\/en\/publication\/alert-2026-88-clickfix-campaign-targeting-mexican-users\/#breadcrumblist","itemListElement":[{"@type":"ListItem","@id":"https:\/\/beaconlab.us\/en\/#listItem","position":1,"name":"Home","item":"https:\/\/beaconlab.us\/en\/","nextItem":{"@type":"ListItem","@id":"https:\/\/beaconlab.us\/en\/publication\/alert-2026-88-clickfix-campaign-targeting-mexican-users\/#listItem","name":"Alert 2026-88 ClickFix Campaign targeting Mexican users"}},{"@type":"ListItem","@id":"https:\/\/beaconlab.us\/en\/publication\/alert-2026-88-clickfix-campaign-targeting-mexican-users\/#listItem","position":2,"name":"Alert 2026-88 ClickFix Campaign targeting Mexican users","previousItem":{"@type":"ListItem","@id":"https:\/\/beaconlab.us\/en\/#listItem","name":"Home"}}]},{"@type":"Organization","@id":"https:\/\/beaconlab.us\/en\/#organization","name":"Beacon Lab","description":"CSIRT by Cybolt","url":"https:\/\/beaconlab.us\/en\/","telephone":"+528007374357","logo":{"@type":"ImageObject","url":"https:\/\/beaconlab.mx\/wp-content\/uploads\/2023\/12\/BeaconLab_V2-03.png","@id":"https:\/\/beaconlab.us\/en\/publication\/alert-2026-88-clickfix-campaign-targeting-mexican-users\/#organizationLogo"},"image":{"@id":"https:\/\/beaconlab.us\/en\/publication\/alert-2026-88-clickfix-campaign-targeting-mexican-users\/#organizationLogo"},"sameAs":["https:\/\/twitter.com\/BeaconLabMX","https:\/\/www.linkedin.com\/showcase\/beaconlabmx"]},{"@type":"WebPage","@id":"https:\/\/beaconlab.us\/en\/publication\/alert-2026-88-clickfix-campaign-targeting-mexican-users\/#webpage","url":"https:\/\/beaconlab.us\/en\/publication\/alert-2026-88-clickfix-campaign-targeting-mexican-users\/","name":"Alert 2026-88 ClickFix Campaign targeting Mexican users - Beacon Lab","description":"Description A phishing and social engineering campaign targeting users in Mexico has been identified, using a supposed \u201cpayment receipt\u201d and documentation that appears to be related to the Tax Administration Service (SAT) as bait. According to the observed flow and the information provided for this bulletin, the victim receives an email from an external address","inLanguage":"en-US","isPartOf":{"@id":"https:\/\/beaconlab.us\/en\/#website"},"breadcrumb":{"@id":"https:\/\/beaconlab.us\/en\/publication\/alert-2026-88-clickfix-campaign-targeting-mexican-users\/#breadcrumblist"},"datePublished":"2026-08-13T12:11:32-06:00","dateModified":"2026-09-29T10:59:09-06:00"},{"@type":"WebSite","@id":"https:\/\/beaconlab.us\/en\/#website","url":"https:\/\/beaconlab.us\/en\/","name":"Beacon Lab","description":"CSIRT by Cybolt","inLanguage":"en-US","publisher":{"@id":"https:\/\/beaconlab.us\/en\/#organization"}}]},"og:locale":"en_US","og:site_name":"Beacon Lab - CSIRT by Cybolt","og:type":"article","og:title":"Alert 2026-88 ClickFix Campaign targeting Mexican users - Beacon Lab","og:description":"Description A phishing and social engineering campaign targeting users in Mexico has been identified, using a supposed \u201cpayment receipt\u201d and documentation that appears to be related to the Tax Administration Service (SAT) as bait. According to the observed flow and the information provided for this bulletin, the victim receives an email from an external address","og:url":"https:\/\/beaconlab.us\/en\/publication\/alert-2026-88-clickfix-campaign-targeting-mexican-users\/","og:image":"https:\/\/beaconlab.mx\/wp-content\/uploads\/2023\/12\/BeaconLab_V2-03.png","og:image:secure_url":"https:\/\/beaconlab.mx\/wp-content\/uploads\/2023\/12\/BeaconLab_V2-03.png","article:published_time":"2026-08-13T18:11:32+00:00","article:modified_time":"2026-09-29T16:59:09+00:00","twitter:card":"summary_large_image","twitter:site":"@BeaconLabMX","twitter:title":"Alert 2026-88 ClickFix Campaign targeting Mexican users - Beacon Lab","twitter:description":"Description A phishing and social engineering campaign targeting users in Mexico has been identified, using a supposed \u201cpayment receipt\u201d and documentation that appears to be related to the Tax Administration Service (SAT) as bait. According to the observed flow and the information provided for this bulletin, the victim receives an email from an external address","twitter:image":"https:\/\/beaconlab.mx\/wp-content\/uploads\/2023\/12\/BeaconLab_V2-03.png"},"aioseo_meta_data":{"post_id":"11968","title":null,"description":null,"keywords":null,"keyphrases":{"focus":{"keyphrase":"","score":0,"analysis":{"keyphraseInTitle":{"score":0,"maxScore":9,"error":1}}},"additional":[]},"primary_term":null,"canonical_url":null,"og_title":null,"og_description":null,"og_object_type":"default","og_image_type":"default","og_image_url":null,"og_image_width":null,"og_image_height":null,"og_image_custom_url":null,"og_image_custom_fields":null,"og_video":"","og_custom_url":null,"og_article_section":null,"og_article_tags":null,"twitter_use_og":false,"twitter_card":"default","twitter_image_type":"default","twitter_image_url":null,"twitter_image_custom_url":null,"twitter_image_custom_fields":null,"twitter_title":null,"twitter_description":null,"schema":{"blockGraphs":[],"customGraphs":[],"default":{"data":{"Article":[],"Course":[],"Dataset":[],"FAQPage":[],"Movie":[],"Person":[],"Product":[],"ProductReview":[],"Car":[],"Recipe":[],"Service":[],"SoftwareApplication":[],"WebPage":[]},"graphName":"WebPage","isEnabled":true},"graphs":[]},"schema_type":"default","schema_type_options":null,"pillar_content":false,"robots_default":true,"robots_noindex":false,"robots_noarchive":false,"robots_nosnippet":false,"robots_nofollow":false,"robots_noimageindex":false,"robots_noodp":false,"robots_notranslate":false,"robots_max_snippet":"-1","robots_max_videopreview":"-1","robots_max_imagepreview":"large","priority":null,"frequency":"default","local_seo":null,"breadcrumb_settings":null,"limit_modified_date":false,"ai":{"faqs":[],"keyPoints":[],"schemas":[],"titles":[],"descriptions":[],"socialPosts":{"email":{"subject":"","preview":"","content":""},"linkedin":[],"twitter":[],"facebook":[],"instagram":[]}},"created":"2026-09-29 16:58:45","updated":"2026-09-29 17:49:57","seo_analyzer_scan_date":null,"focus_keyword":null,"additional_keywords":null,"truseo_locale":null},"aioseo_breadcrumb":"<div class=\"aioseo-breadcrumbs\"><span class=\"aioseo-breadcrumb\">\n\t\t\t<a href=\"https:\/\/beaconlab.us\/en\/\" title=\"Home\">Home<\/a>\n\t\t<\/span><span class=\"aioseo-breadcrumb-separator\">&raquo;<\/span><span class=\"aioseo-breadcrumb\">\n\t\t\tAlert 2026-88 ClickFix Campaign targeting Mexican users\n\t\t<\/span><\/div>","aioseo_breadcrumb_json":[{"label":"Home","link":"https:\/\/beaconlab.us\/en\/"},{"label":"Alert 2026-88 ClickFix Campaign targeting Mexican users","link":"https:\/\/beaconlab.us\/en\/publication\/alert-2026-88-clickfix-campaign-targeting-mexican-users\/"}],"_links":{"self":[{"href":"https:\/\/beaconlab.us\/en\/wp-json\/wp\/v2\/publicacion\/11968","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/beaconlab.us\/en\/wp-json\/wp\/v2\/publicacion"}],"about":[{"href":"https:\/\/beaconlab.us\/en\/wp-json\/wp\/v2\/types\/publicacion"}],"version-history":[{"count":1,"href":"https:\/\/beaconlab.us\/en\/wp-json\/wp\/v2\/publicacion\/11968\/revisions"}],"predecessor-version":[{"id":11969,"href":"https:\/\/beaconlab.us\/en\/wp-json\/wp\/v2\/publicacion\/11968\/revisions\/11969"}],"wp:attachment":[{"href":"https:\/\/beaconlab.us\/en\/wp-json\/wp\/v2\/media?parent=11968"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}