Back to all news
Security

ClickFix Smuggles Payloads Through Browser Cache to Bypass Windows Run Limits

The Hacker News·October 6, 2026·1 min read
ClickFix Smuggles Payloads Through Browser Cache to Bypass Windows Run Limits

Microsoft Threat Intelligence reported a new ClickFix attack that uses compromised websites to pre-fetch a malicious script into the browser cache, disguised as a PNG file. Users are tricked into executing the cached payload, bypassing Windows run limits that block remote downloads. The technique evades traditional security controls by leveraging the browser's cache.

Read at The Hacker News
Daily crypto arcade

Read the news, then play it.

Chainshorts turns crypto headlines into a daily game. Catch up in 60 words, then jump into daily lucky draws for a shot at the pot.

Open ChainshortsGet it on the Solana dApp Store