ZeroHour
Infosecurity Magazinepublished ()ingested

Fake Codex Download Uses Google Sites to Deliver macOS Malware

mediumMalwareimportance 45
AI summary · glm-5.3-flash

Fake OpenAI Codex download pages on Google Sites, pushed via sponsored search and ClickFix lures, deliver malware to macOS users.

Threat actors are hosting fake Codex download pages on Google Sites and promoting them through sponsored search results. Victims are walked through ClickFix social engineering that leads to malware installation on macOS systems. The campaign abuses trusted Google infrastructure and search ads to reach Mac users.

  • Fake Codex pages hosted on Google Sites
  • Distributed via sponsored search results
  • Uses ClickFix social engineering technique
  • Targets macOS users with malware payload
Full article

Fake Codex pages used Google Sites, sponsored search and ClickFix to target Mac users

This source does not provide full text. Read it at infosecurity-magazine.com.