ClickFix attacks infecting PCs and Macs are going viral
Simplicity—combined with the difficulty of getting stuff done—makes ClickFix ideal.
ClickFix attacks, once rare, have become commonplace as cybercriminals exploit its ease and efficiency in infecting both PC and Mac users. All it takes is a single compromised website, a fake CAPTCHA overlay, and the execution of a solitary terminal command. The sheer number of unsuspecting visitors who fall for this ploy has led nearly every malware operator to adopt the technique.
Notably, even Kremlin-backed hacking groups have joined the trend. Kevin Beaumont, an independent researcher, noted that Reddit is flooded with posts of individuals getting their computers infected through ClickFix, with legitimate websites falling victim to this scam as well. The question arises: how many of us, especially seasoned internet users, contribute to this problem?
Many dismiss the attacks, often blaming the victims for their lack of attention and gullibility. However, the reality is that for many casual users, computers and the internet have become so complicated—riddled with intrusive interstitials, time-consuming CAPTCHAs, and ever-changing interfaces—that they have become desensitized to seemingly absurd and burdensome instructions.
Written by urgent.news from Ars Technica's reporting — not their text. Machine-written — may contain errors; check the original before relying on it.