Skip to content

ClickFix Smuggles Payloads Through Browser Cache to Bypass Windows Run Limits

  • by

​A new type of ClickFix attack is using compromised websites to trick users into executing a malicious payload cached in a web browser’s cache.

“Instead of downloading and executing remote payloads like the typical attack pattern, in this attack, the websites pre-fetch a script payload into the browser cache disguised as a PNG file,” the Microsoft Threat Intelligence team said in a post on X. A new type of ClickFix attack is using compromised websites to trick users into executing a malicious payload cached in a web browser’s cache.

“Instead of downloading and executing remote payloads like the typical attack pattern, in this attack, the websites pre-fetch a script payload into the browser cache disguised as a PNG file,” the Microsoft Threat Intelligence team said in a post on X.  The Hacker News

Leave a Reply

Your email address will not be published. Required fields are marked *