Got a message about a glitch on your site? It might be a hacking attempt
The Israel National Cyber Directorate warns of a ClickFix attack exploiting compromised WordPress sites. The fake message asks users to run malicious code that steals passwords and login credentials. Instructions: close the site and report it.
The Israel National Cyber Directorate has issued an urgent public warning following the spread of the ClickFix attack. Attackers break into WordPress sites and display a fake error message, asking the user to copy code, open the Run dialog (Windows+R), and paste it. Running the code downloads malware that steals saved passwords, banking login details, and personal files. The directorate clarifies that legitimate sites will never ask users to manually run system commands. Instructions: close the tab immediately, do not copy code, and ensure security software is updated. If the code has already been run, disconnect the computer from the internet, have it professionally checked, and change passwords from a separate device. Reports can be made to hotline 119.
Got a message about a glitch on your site? It might be a hacking attempt