Back to all news
Security

Placeholder domain used in dev docs now serves ClickFix attacks

BleepingComputer·September 23, 2026·1 min read
Placeholder domain used in dev docs now serves ClickFix attacks

The 'third-party.com' domain, a common placeholder in developer documentation, now serves a fake Cloudflare verification page that tricks Windows users into executing PowerShell commands. This ClickFix attack leverages trust in a familiar domain to deliver malware, highlighting risks of using placeholder domains in code examples and the need for vigilance.

Read at BleepingComputer
Daily crypto arcade

Read the news, then play it.

Chainshorts turns crypto headlines into a daily game. Catch up in 60 words, then jump into daily lucky draws for a shot at the pot.

Open ChainshortsGet it on the Solana dApp Store