A New, Silent Social Engineering Attack Is Being Used By Hackers - And Your Security Systems Might Not Notice Until It's Too Late
ITPro, Thursday, July 10th, 2025
Malicious actors are already using FileFix technique in malware-delivery dummy runs, Check Point claims
Cybersecurity researchers at Check Point have identified a new, insidious social engineering technique that requires almost no user interaction.
The FileFix technique builds on an already widely used tactic called ClickFix, which according to Check Point tricks users into running malicious commands in the Windows Run dialog.
FileFix, meanwhile, opens a Windows File Explorer window from a web page and surreptitiously loads a disguised PowerShell command into their clipboard.