browser prompts

Winsage
September 4, 2026
Microsoft has identified a new malware campaign called TerminalFix that uses fake CAPTCHA prompts to trick Windows users into executing malicious commands. This campaign is a variation of ClickFix attacks and employs deceptive pages that impersonate reputable services like Cloudflare. Instead of traditional CAPTCHA challenges, users are instructed to open PowerShell or Command Prompt and paste in commands, allowing attackers to execute complex scripts more easily. TerminalFix initiates a multi-stage intrusion, granting attackers persistent proxy access to the infected machine, which can lead to further exploitation of the company's network. The campaign relies on social engineering tactics, requiring user compliance with counterfeit verification instructions. Microsoft has released mitigation guidance, recommending restrictions on PowerShell access, monitoring for DLL sideloading, blocking outdated Flash plugins, and enabling cloud-delivered protection in Microsoft Defender Antivirus. The campaign poses significant risks to enterprise networks, but individual users should also be cautious about executing commands requested by websites.
Winsage
June 3, 2025
Microsoft is implementing updates to Windows 10 and Windows 11 to comply with the Digital Markets Act (DMA) for users in the European Economic Area (EEA). Key changes include the removal of persistent prompts to set Microsoft Edge as the default browser, with notifications only appearing upon launching Edge. Users will have their choice of a third-party browser automatically applied to more link and file types, and the selected browser will be pinned to the Taskbar without extra steps. Additionally, if Microsoft Edge is uninstalled, other Microsoft applications will not prompt users to reinstall it, specifically for Progressive Web Apps (PWAs) using Edge technology. These updates are expected to roll out starting in June, with previews already available to Insiders.
Search