In March 2026, Kaspersky Threat Research has identified a new malicious campaign targeted at developers looking for installation instructions for Claude Code, a development agent created by Anthropic.
Dubbed InstallFix by Push Security, the scheme inserts instructions to download malware during the Claude Code install ...
Threat actors are employing a new variation of the ClickFix social engineering technique called InstallFix to convince users ...
InstallFix delivers an infostealer to your device.
The cyberattacks blend malvertising with a ClickFix-style technique that highlights risky behavior with AI coding assistants and command-line interfaces.
Attackers are using fake Claude Code install pages and malicious search ads to spread infostealer malware targeting Windows ...