New ClickFix attack abuses nslookup to retrieve PowerShell payload via DNS

Published on February 16, 2026

Threat actors are now abusing DNS queries as part of ClickFix social engineering attacks to deliver malware, making this the first known use of DNS as a channel in these campaigns. [...]