惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

P
Proofpoint News Feed
V
V2EX
WordPress大学
WordPress大学
Google DeepMind News
Google DeepMind News
Martin Fowler
Martin Fowler
小众软件
小众软件
Blog — PlanetScale
Blog — PlanetScale
月光博客
月光博客
The Cloudflare Blog
T
Tailwind CSS Blog
H
Help Net Security
腾讯CDC
爱范儿
爱范儿
人人都是产品经理
人人都是产品经理
H
Hackread – Cybersecurity News, Data Breaches, AI and More
The GitHub Blog
The GitHub Blog
Microsoft Security Blog
Microsoft Security Blog
Stack Overflow Blog
Stack Overflow Blog
D
DataBreaches.Net
C
Check Point Blog
量子位
酷 壳 – CoolShell
酷 壳 – CoolShell
美团技术团队
让小产品的独立变现更简单 - ezindie.com
让小产品的独立变现更简单 - ezindie.com

Hackread – Cybersecurity News, Data Breaches, AI and More

Operation Endgame Disrupts StealC, Amadey and SocGholish Malware Networks New GhostShell Hacking Group Targets Ukraine’s Drone Defense Sector Fake npm Packages Impersonate PostCSS Tool to Steal Chrome Passwords Best Crypto Payment Solutions for E-Commerce Businesses Internet Society Foundation Opens Global Call for Common Good Cyber Fund to Strengthen Cybersecurity LastPass Confirms Customer Data Breach After Klue OAuth Token Theft ‘Cordyceps’ CI/CD Flaw Exposes Microsoft, Google, Apache Repos to Pipeline Hijacking The Rise of AI-Powered Academic Fraud: Beyond Traditional Plagiarism New CryptoBandits Malware Uses USB Drives and Tor to Steal Crypto The Evolution of iGaming Fraud: What Security Teams Should Expect in 2027 2 Scattered Spider-Linked Hackers Plead Guilty Over £39M TfL Cyberattack Beats Studio Buds Flaw Could Let Nearby Attackers Eavesdrop on Users Texas Parks and Wildlife Data Breach Affects Over 3M License Customers Threat Hunting Beyond Alerts: Finding the Activity Detection Misses Scammers Use Fake GitHub Stars, VirusTotal Reviews to Spread Crypto Clipper Salesforce Disables Klue Integration After OAuth Token Theft Hits Customer Data MDR Provider Comparison: Time to Discover and Respond to Threats Meteor 3.0 Migration Helped Rocket.Chat Move Off End-of-Life Node.js Runtime Gcore Helps Ucom Safeguard Public Live Broadcast Infrastructure During Armenia’s Parliamentary Elections Nintendo America Employee Data Exposed After Shadowbyt3$ Targets TinyPulse eFAQ Publishes Investigation Into Alleged Scam Activity and Coordinated Reputation Attacks FIFA World Cup 2026: Hackers Target Football Fans With Fake Tickets Sites MacBook Neo vs Windows Laptops for Cybersecurity Tasks Operation Endgame Disrupts SocGholish Malware Infrastructure What Businesses Should Know Before Migrating Their CMS DragonForce Ransomware Abused Microsoft Teams to Hide Malware Activity Agentjacking: Researchers Show How One Fake Bug Report Can Hijack AI Coding Agents FortiBleed Attack Exposes Fortinet Firewall Credentials in 194 Countries SpyCloud Report Finds Phishing Attacks Surge as Employee Data Is Exposed at 86% of Fortune 100 Companies 152 Chrome Live Wallpaper Extensions Hid Ad Tracking and Fake Search Clicks
FBI Chief Kash Patel’s Clothing Store Hacked in ClickFix ...
Deeba Ahmed · 2026-05-26 · via Hackread – Cybersecurity News, Data Breaches, AI and More

An online clothing shop linked to FBI Director Kash Patel went offline on Friday after it was found distributing an Infostealer to visitors. The shop, called Based Apparel, was compromised by hackers to trick macOS users into downloading this specific type of malware that steals private data.

How this ClickFix Attack Works

The unknown hackers involved in this campaign used a deceptive technique known as a ClickFix attack. When a user visited BasedApparel.com, the website displayed a fake warning page designed to look exactly like Cloudflare, a website security company that runs anti-bot “Verify you are human” checks.

The fake page told users that unusual web traffic was detected and asked them to complete a CAPTCHA test. To do this, the site gave highly unusual instructions and told visitors to open Terminal, which is a built-in utility on Mac computers used to execute system commands.

The website showed a button that said “Copy,” claiming it would copy a simple phrase like “I am not a robot.” Instead, clicking the button copied a long piece of obfuscated text. The website then instructed the user to paste this text into their Terminal, and when it is pasted and run, the hidden code executed a shell script that connected to the hackers’ C2 domain. The malicious script was designed to drain crypto assets from digital wallets and steal sensitive session tokens and browser data.

FBI Chief Kash Patel’s Clothing Store Hacked in ClickFix Infostealer Attack
ClickFix attack on the clothing store

Discovery, Website Shutdown, and Coming Back Soon Message

A web user based in Portugal first spotted the attack on Thursday. Later, researchers managed to replicate the attack while navigating the store on a MacBook using the Chrome browser. However, by Friday, BasedApparel.com was completely down, displaying a message stating the store would be back online shortly.

Video demo of the ClickFix attack on the compromised site (Video credit: Debbie (@dm4uz3 on X)

It remains unclear whether any visitors lost data due to the cyberattack, given that it attracts so much traffic. Internet traffic data from the research firm Ahrefs reveals that the store, co-created by Kash Patel and Andrew Ollis before Patel became the head of the FBI, gets about 33,600 visits every month.

At the time of writing, the website was online, only displaying a one-page message stating “We’ll Be Right Back. We’re making improvements to better serve you. The store will be back online shortly – bolder than ever. Back Soon, Stay Based.”

FBI Chief Kash Patel’s Clothing Store Hacked in ClickFix Infostealer Attack
Current status of the website (Image credit: Hackread.com)

This is also not the first time Kash Patel has appeared in cybersecurity-related headlines. Last month, the Iran-linked Handala hacker group breached Patel’s personal Gmail account and leaked private photos and documents. Nevertheless, if you visited the malicious website, you should scan your browser and device for infostealer malware.