logo

ClickFix Campaign: Fake Google Meet Alerts Spread Malware Across Windows and macOS

ID: 236bcee0-686f-50ff-82cc-31f573cbbf5c

STIX ID: report--236bcee0-686f-50ff-82cc-31f573cbbf5c

Feed Name: SOCRadar Blog

Threat Score
70/100

Date Published: 2024-12-31

Date Updated: 2026-04-30

Author: Ameer Owda

...
...

The ClickFix campaign uses fake Google Meet error messages to lure users into downloading malicious payloads or running PowerShell commands, distributing info-stealers (Lumma Stealer, DarkGate) that target Windows and macOS; the report lists TTPs, actionable IoCs (file hashes, malicious URL, C2 hostname) and provides mitigation and remediation recommendations.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.