New exploit

FileFix can make Windows File Explorer an attack vector

A cybersecurity researcher known as mr.d0x has built FileFix, a variant of the ClickFix social engineering attack that uses the Windows File Explorer address bar to execute malicious commands. The researcher explains that the method could be used by threat actors due to its simplicity and familiarity to users and serves as an example of how phishing attacks can evolve to exploit more user-friendly environments.

Full Story: BleepingComputer (6/24)