# ClickFix fake-CAPTCHA attacks spread across Windows and macOS

_Friday, September 11, 2026 at 7:30 AM EDT · Security · Latest · Tier 2 — Notable_

![ClickFix fake-CAPTCHA attacks spread across Windows and macOS — Primary](https://cdn.arstechnica.net/wp-content/uploads/2026/09/malware-infected-laptop-1152x648.jpg)

ClickFix attacks have moved from an exotic technique to a mainstream infection method targeting both Windows PCs and Macs, Ars Technica reports.

The attacks require a compromised website, a fake CAPTCHA overlay, and a single terminal command. After engaging with the CAPTCHA, visitors are told to copy obscured text and paste it into Windows Run, PowerShell, or the macOS terminal. Independent researcher Kevin Beaumont said Thursday that Reddit is filling with reports of infections and that legitimate websites are being hacked to serve the fake prompts.

Ars attributes the technique's spread to user fatigue with interstitials, CAPTCHAs, and changing interfaces.

## Sources

- [Ars Technica](https://arstechnica.com/security/2026/09/clickfix-attacks-infecting-pcs-and-macs-are-going-viral/)

---
Canonical: https://techandbusiness.org/newswire/814c9dxSPbCp6Vgg9Gk5Ye
Retrieved: 2026-09-12T04:09:08.904Z
Publisher: Tech & Business (techandbusiness.org)
