ClickFix Attack Uses Windows Terminal to Evade Detection
A new ClickFix attack variant bypasses Run dialog protections by instructing victims to use Windows Terminal for executing malicious PowerShell commands that lead to Lumma Stealer infections.
ClickFix attackers using new tactic to evade detection, says Microsoft
Threat actors exploit Windows Terminal to deliver ClickFix phishing attacks, bypassing traditional Run command defenses and security awareness training through malicious PowerShell commands.
Microsoft spots ClickFix scam spreading Lumma infostealer
A new ClickFix scam variant tricks Windows users into pasting malware commands into Windows Terminal, deploying the Lumma credential-stealing infostealer to compromise browser vaults.