Microsoft warns of ClickFix campaign exploiting Windows Terminal to deliver Lumma Stealer

2026-03-06T14:51:48Zab187897fea40f6effba005de497df1950043fa91eae42f78b03990992fbf494
APTBadPawCISACVE-2023-43000Cisco Secure FMCClickFixCorunaDust SpecterGTIGKnown Exploited VulnerabilitiesLeakBaseLumma StealerMeowMeowOperation LeakPhobosSPLITDROPTWINTALKTWINTASKWindows TerminaliOS exploit kitphishingransomwareremediationsocial engineeringzero-day

What happened

Collection of recent cyber threats and vulnerability developments: Microsoft warns of a ClickFix social‑engineering campaign that abuses Windows Terminal to execute commands and drop Lumma Stealer; Iran‑linked APT Dust Specter is targeting Iraqi officials with phishing delivering new malware families (SPLITDROP, TWINTASK, TWINTALK); Google GTIG reports 90 zero‑days exploited in 2025 and uncovers the Coruna iOS exploit kit (targets iOS 13–17.2.1); CISA added multiple exploited flaws to its KEV catalog including CVE‑2023‑43000 (Apple WebKit); Cisco patched maximum‑severity Secure FMC flaws that可

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
securityaffairs
Record identifier
ab187897fea40f6effba005de497df1950043fa91eae42f78b03990992fbf494
Enrichment time
2026-03-06T14:51:48Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · Microsoft warns of ClickFix campaign exploiting Windows Terminal to deliver Lumma Stealer · Baitaphish