ClickFix Fake CAPTCHA Attacks Compromise Enterprises with PowerShell Execution
VPN Central [Unofficial]
February 23, 2026
ClickFix attacks trick users into pasting malicious PowerShell commands via fake CAPTCHA prompts. Victims encounter deceptive Chrome or Word error screens demanding Win+R execution to “fix” issues. Single clicks lead to enterprise-wide Latrodectus and Supper malware infections. Cert.pl discovered the campaign after a large Polish organization breach. Compromised sites serve JavaScript that copies obfuscated PowerShell […]
The post ClickFix Fake CAPTCHA Attacks Compromise Enterprises with PowerShell Execution appeared first on VPN Central.
Discussion in the ATmosphere