Post
Microsoft Threat Intelligence
threatintel.microsoft.com
did:plc:ezrjx3qddwj4azn373c2ipdg
Microsoft Threat Intelligence has identified a cluster of compromised websites leading to ClickFix attacks. Instead of downloading and executing remote payloads like the typical attack pattern, in this attack, the websites pre-fetch a script payload into the browser cache disguised as a PNG file.
2026-10-03T01:40:51.868Z