Fake Claude installer ads target Mac developers
Push Security says a Google ad for "claude mac" showed bing.com, then routed users to a fake Claude page whose copy button swaps in a malicious command. If you install AI tools from a search ad, stop.
Definition
ClickFix attack is a ClickFix attack is a social engineering trick that gets you to copy, paste and run a malicious command yourself, usually from a fake error, CAPTCHA or install page.
A ClickFix attack is a scam that makes you the delivery mechanism. Instead of exploiting a flaw in your software, the attacker shows you a convincing page and talks you into running their command on your own machine.
Security software is built to stop programs from sneaking in. Here you start the program yourself, so many automated defenses never see an intrusion. The page also borrows trust: it looks like a brand you know, and the steps feel routine.
Developers are a particular target. Many real tools, including AI coding assistants, install with a single line pasted into a terminal, so pasting a command from a web page feels normal. Developers also tend to hold source code, cloud keys and access to production systems.
ClickFix is a form of social engineering, close to phishing but ending in a command rather than a stolen login. It is different from prompt injection, where hidden text manipulates an AI model instead of a person, though the defensive habit is similar: treat instructions from untrusted content as data, not orders. AI tools do not cause ClickFix, but their popularity gives attackers fresh brand names to imitate.
A good rule is to treat "copy this and run it" from any page you did not choose to visit as a command from a stranger.
A scam that tricks you into running a malicious command yourself, usually by showing a fake error, CAPTCHA or install page with a command to paste.
Type the vendor's address yourself, avoid sponsored results for downloads, and paste commands into a text editor to read them before running anything.
Push Security says a Google ad for "claude mac" showed bing.com, then routed users to a fake Claude page whose copy button swaps in a malicious command. If you install AI tools from a search ad, stop.