ClickFix added nslookup commands to its arsenal for downloading RATs

ClickFix added nslookup commands to its arsenal for downloading RATs

• ClickFix uses fake CAPTCHAs and bogus updates to trick users into executing malicious commands. • Traditional mshta and PowerShell vectors are blocked, so attackers shifted to ns

Threat Intelligence · February 16, 2026 (updated February 24, 2026) · 1 min · 207 words