chiprook
← Security
SecurityOctober 10, 2026, 03:31

Hackers abuse Google Ads and Bing redirects to push Claude ClickFix attacks

Push Security researchers uncovered an "Adception" campaign where attackers buy Google ads for "claude mac" and route traffic through Bing's trusted click-tracking redirect and a compromised WordPress site to a fake Claude download page. The copy button swaps Anthropic's legitimate install command for a malicious one that downloads a .dat file and pipes it into macOS zsh.

Hackers abuse Google Ads and Bing redirects to push Claude ClickFix attacks
#Google#Bing#Claude#Anthropic
Read next
Security

Custom ChatGPTs in Google ads push ClickFix attacks to deploy RAT

Security

Hackers host fake ChatGPT model on official site to spread ClickFix malware

Security

Fake ChatGPT ads trick Windows users into downloading malware via ClickFix

Security

Coolify flaw let password-reset tokens be redirected to attacker hosts