ClickFix attacks, which use fake CAPTCHA overlays and terminal commands on compromised websites, have become mainstream malware distribution techniques affecting both PC and Mac users. Attackers exploit user fatigue from legitimate security prompts and complex interfaces, making the malicious instructions appear routine. The technique's simplicity and effectiveness have led even Kremlin-backed groups to adopt it.
The Human Rights Foundation condemns WP Engine for geo-blocking access to its Tyranny Tracker website from Russia after Roskomnadzor, Russia's censorship agency, demanded it. WP Engine complied without a court order despite its 2022 statement opposing Russian censorship, effectively becoming a tool of Kremlin repression against a site documenting authoritarianism.