Key Takeaways:
- Hackers hijacked official Reddit accounts to post Reddit malware ads featuring fake verification ads.
- Unwitting users pasted malicious code into their computer terminal windows.
- The dangerous campaign successfully installed stealthy data-stealing malware onto devices.
Hackers recently targeted Mac and Windows users on Reddit with fake verification ads, tricking victims into copying malicious commands into their system terminals to install data-stealing malware.
Hackers Hijack Reddit Ads To Spread Malware
A rising cybersecurity threat known as ClickFix has grown to an alarming and massive scale across major online platforms, video streaming sites, and popular social networks. Security researchers at Hudson Rock recently discovered that malicious hackers successfully compromised the official Reddit advertising account belonging to prominent streaming service HBO Max.
The bad actors used this verified corporate account to publish 108 fake Reddit malware ads designed specifically to deceive unsuspecting internet users.
When everyday people clicked on the fraudulent advertisements, they landed directly on deceptive web pages featuring fake CAPTCHA verification checks designed to look authentic.
These convincing fake prompts made daily website visitors believe they needed to perform a quick security task to proceed further on the site. Unwitting users followed the instructions carefully without realizing they were walking straight into a dangerous digital trap set by clever cybercriminals.
Victims Execute Malicious Terminal Commands
The entire attack behind Reddit malware ads relies completely on simple social engineering tactics rather than complicated software exploits or severe zero-day vulnerabilities. The fake web page instructs victims to copy a hidden string of text and paste it directly into their computer terminal or command prompt window.
For Windows users, the prompt advises using the Run dialog or PowerShell utilities, while Mac users are told to open the system Terminal.
Once the user presses the Enter key on their keyboard, the pasted text executes a hidden script that downloads malicious code directly from the internet. This sneaky process installs information-stealing malware onto the victim’s personal machine in just a few short seconds. The malware then targets saved browser passwords, cookies, login credentials, and cryptocurrency wallets without triggering immediate security alerts.
Security Experts Track Growing Threat Campaigns
Security researcher Kevin Beaumont highlighted publicly that online discussion forums are frequently flooded with panicked reports from victims whose personal machines became infected by this method. Experts note that traditional web browsers previously blocked automated clipboard access by default to prevent such dangerous actions from occurring during routine web browsing sessions. However, modern threat actors have successfully adapted their technical tactics to exploit user trust and routine browsing habits.
Reddit administrators quickly locked the compromised advertising account and removed the Reddit malware ads once they were discovered by security teams and researchers.
Visit more of our news! CyberPro Magazine




