Windows Users Face ClickFix Malware Threat in Fake Updates

25 Nov 2025

Security researchers have identified a new ClickFix attack targeting Windows users with fake security updates. Attackers are deploying realistic Windows Security Update screens to trick users into executing harmful commands.

Recent Campaign Details

The ClickFix method, a form of social engineering, has become a prevalent technique for coercing users to run damaging commands on their devices. A report from Huntress on 2025-11-24 highlights the latest ClickFix campaigns delivering credential-stealing malware.

Analysts Ben Folland and Anna Pham from Huntress observed the use of steganography, hiding malicious code within PNG images. The malware uses color channels to decode the payload in memory, adding complexity and stealth to the attack.

Safety Recommendations

All Windows users should be cautious and verify update prompts through official Microsoft channels. A legitimate Windows update will never ask users to input commands into the Windows run prompt. Any such prompts should be disregarded and treated as potential threats.

The increase in these attacks underscores the need for vigilance as both state-sponsored and criminal groups exploit this method for initial access to systems.

Top charts for Desktop Windows

uTorrent

uTorrent

Latest update uTorrent download for free for Windows PC or Android mobile

5
1032 reviews
6639275
downloads
Zona

Zona

Latest update Zona download for free for Windows PC or Android mobile

4
614 reviews
1382544
downloads
WinRAR

WinRAR

Latest update WinRAR download for free for Windows PC or Android mobile

5
735 reviews
546238
downloads
Minecraft

Minecraft

Latest update Minecraft download for free for Windows PC or Android mobile

5
750 reviews
459874
downloads

News and reviews for Desktop Windows

Spellcasters Chronicles Closed Beta Opens 2025-12-04

Spellcasters Chronicles by Quantic Dream launches a closed beta on 2025-12-04 in Europe and North America.

Read more

Seafarer Launches Free LNG & Bulk Update with New Ships

Seafarer releases a free LNG & Bulk Update on Steam with new ships and features for enhanced gameplay.

Read more

Space Marine's Patch 11 Enhances Damage Cap and PvE Experience

Warhammer 40,000: Space Marine's Patch 11 boosts netcode damage cap and adds new PvE content. Expected to refine gameplay dynamics.

Read more

Windows Users Face ClickFix Malware Threat in Fake Updates

ClickFix attack deploys fake Windows updates to spread malware. Users should verify updates through official channels.

Read more

ClickFix Used in Malvertising Campaign to Target Users

Cyber researchers identify JackFix campaign using ClickFix to hack systems via fake updates.

Read more

Cold Fear Returns with 4K Update on GOG

Cold Fear, the 2005 survival-horror game, is re-released on GOG with 4K support and modern features.

Read more

Solo Leveling Overdrive Relaunch Removes Gacha Elements

Solo Leveling: Arise Overdrive revamps Netmarble's original with improved mechanics, dropping gacha elements for player-driven rewards.

Read more

ClickFix Scam Exploits Fake Windows Update to Spread Infostealer

ClickFix attacks use fake Windows Update screens to deploy infostealer malware globally, impacting multiple organizations.

Read more

Steganography Attack Leverages Fake Windows Updates

A new steganography attack exploits fake Windows updates to deliver malware using clipboard manipulation.

Read more

Windows 11 Insider Adds Cross-Device Resume Feature

New Windows 11 Insider Build allows cross-device resume, enhancing connectivity between Android phones and PCs.

Read more