VOID#GEIST malware campaign delivers XWorm, AsyncRAT, and Xeno RAT using batch scripts, Python loaders, and explorer.exe injection.
Threat actors are employing a new variation of the ClickFix social engineering technique called InstallFix to convince users ...
Scammers are using cloned versions of popular AI coding tools to spread info-stealing malware through fake installation ...
Dubbed InstallFix by Push Security, the scheme inserts instructions to download malware during the Claude Code install process on cloned websites.