FBI director's Based Apparel site has been spotted hosting a 'ClickFix' attack
TL;DR AI
2 min readKey summary
Researchers found the Based Apparel site serving a ClickFix-style attack that targeted macOS users.
The page showed Terminal commands that could extract saved Chromium browser credentials and crypto wallet data.
The stolen data was packaged into a zip file and sent to an attacker-controlled server.
The case highlights how social engineering on a compromised or malicious site can lead to credential theft and wallet compromise.

