ConciseSignal
Following

CrowdStrike warns of rising ClickFix social engineering attacks

CrowdStrike researchers have reported an uptick in 'ClickFix' attacks, a social engineering technique where users are tricked into copying and running malicious commands under the pretense of troubleshooting common IT issues. The company observed that groups like STARDUST CHOLLIMA and VOODOO BEAR have used ClickFix in real-world incidents. CrowdStrike's data show a 563% rise in fake CAPTCHA-related attack attempts in 2025.

Why it mattersClickFix bypasses traditional security controls by relying on users to execute malicious commands, making it difficult to detect or prevent with technical means. Enterprises face heightened risk as these attacks exploit standard workflows and trusted operating system tools.

Sources covering this

CrowdStrikePrimaryCopy, Paste, Compromised: How ClickFix Attacks Work and How CrowdStrike Stops Them5:00 AM →

In this story

Concise Signal DailyEnterprise AI, security & business tech.Weekdays, 7am Eastern · Sample issue

More in Cybersecurity