ConciseSignal
Following

Fraudulent Google Ads redirect users to fake Claude downloads

Hackers are using Google search ads that redirect through Bing's click-tracking system to lure users seeking Claude for Mac to install malware. They exploit Bing's trusted domain to evade ad security checks and ultimately direct victims to a fake Claude installer site. This page provides a command that looks legitimate but pastes malicious instructions, silently downloading and executing a harmful file on macOS systems.

Why it mattersThe attack cleverly exploits trusted domains and multiple redirect layers to bypass security controls, making it harder for users and automated systems to detect the threat. As macOS-targeted attacks increase, even experienced users may be deceived by convincing imitations and trusted URLs.

Sources covering this

BleepingComputerHackers abuse Google Ads, Bing redirects to push Claude ClickFix attacks8:31 PM →

In this story

Concise Signal DailyEnterprise AI, security & business tech.Weekdays, 7am Eastern · Sample issue

More in Cybersecurity