[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$f-jGn5K9FNMqBkjmp_M5tWh3Yq2hQBj7PJaGejum-p2Q":3},{"article":4,"iocs":31,"watch_terms":38},{"id":5,"title":6,"slug":7,"summary":8,"ai_summary":9,"brief":10,"full_text":10,"url":11,"image_url":12,"published_at":13,"ingested_at":14,"relevance_score":10,"entities":15,"category_id":16,"category":17,"article_tags":20},"057e46d0-e239-4ae5-8625-1b12f9a2b6a5","Microsoft Reveals ClickFix Campaign Using Windows Terminal to Deploy Lumma Stealer","microsoft-reveals-clickfix-campaign-using-windows-terminal-to-deploy-lumma-steal","Microsoft on Thursday disclosed details of a new widespread ClickFix social engineering campaign that has leveraged the Windows Terminal app as a way to activate a sophisticated attack chain and deploy the Lumma Stealer malware. The activity, observed in February 2026, makes use of the terminal emulator program instead of instructing users to launch the Windows Run dialog and paste a command","Microsoft disclosed a ClickFix social engineering campaign that abuses Windows Terminal to deploy Lumma Stealer malware. The campaign, observed in February 2026, tricks users into executing malicious commands through the terminal emulator rather than traditional methods like the Windows Run dialog.",null,"https:\u002F\u002Fthehackernews.com\u002F2026\u002F03\u002Fmicrosoft-reveals-clickfix-campaign.html","https:\u002F\u002Fblogger.googleusercontent.com\u002Fimg\u002Fb\u002FR29vZ2xl\u002FAVvXsEj8H7sofZNyrZMv3vcKOeRa7Rw948uDto8VgAXNO8ZKLjUdzhpZW-ub4M_fxuM631fZplWm8BkPK8OifkblZnbNgFKXUB4PoFXXSeg1D0_olC5lAxQ0KtidSFQHlUvxVn1subQyQtI2qbzhChm0Sm3ADLs9C120EfhvLoBtNLbbtrSiyl3AKcss7u-WT-lS\u002Fs1600\u002Fclickfix.jpg","2026-03-06T06:44:00+00:00","2026-03-14T09:41:13.354083+00:00",[],"89f78b1c-3503-45a1-9fc7-e23d2ce1c6d5",{"id":16,"icon":10,"name":18,"slug":19},"Malware","malware",[21,26],{"category":22},{"id":23,"icon":10,"name":24,"slug":25},"2c8f44d4-b56e-47cf-9677-04f22c9ee78d","Identity & Access","identity-access",{"category":27},{"id":28,"icon":10,"name":29,"slug":30},"e7b231c8-5f79-4465-8d38-1ef13aea5a14","Threat Intelligence","threat-intelligence",[32,35],{"type":19,"value":33,"context":34},"Lumma Stealer","Information stealer malware deployed via ClickFix campaign",{"type":19,"value":36,"context":37},"ClickFix","Social engineering campaign using Windows Terminal for malware deployment",[]]