Hackers Hijack Bing Redirects Through Google Ads to Spread Fake Claude Installers

·
Listen to this article~3 min

Hackers are abusing Bing redirects in Google Ads to push fake Claude installers. Learn how this ClickFix attack works and how to protect your antidetect browser profiles.

You're scrolling through Google, see an ad for Claude, click it, and land on what looks like the official installer. But it's not. Hackers have found a sneaky way to abuse Google Ads and Bing redirects to push malware, and it's catching a lot of people off guard. ### How the Attack Works The scheme is surprisingly simple. Cybercriminals buy Google search ads that appear when you search for "Claude download" or similar terms. The ads look legitimate, often using the official Claude branding. But the click URL isn't a direct link to Anthropic's site; it's a redirect through a legitimate Bing search result. That redirect adds a layer of trust and helps bypass Google's ad review systems. Once you click, you're sent to a fake Claude installer page that prompts you to run a malicious script. This is where the ClickFix technique comes in. Instead of exploiting a software vulnerability, it tricks you into fixing a fake error by pasting a command into your terminal or PowerShell. That command downloads and runs malware, giving attackers full access to your machine. ### Why This Matters for Antidetect Browser Users If you're using an antidetect browser for managing multiple accounts, you're already a target. These attacks often aim to steal browser fingerprints, cookies, and session tokens. Once compromised, your carefully built profiles can be hijacked, leading to account bans, data theft, or worse. > "The line between adware and full-blown malware is getting thinner. What used to be annoying pop-ups are now sophisticated attacks that can wipe out your digital identity in seconds." ### How to Protect Yourself - **Never download software from search ads.** Always go directly to the official website by typing the URL yourself. - **Check the domain.** If you're redirected to a site that doesn't match the official one, close it immediately. - **Use an antidetect browser with built-in protection.** The best antidetect browsers, like Multilogin or GoLogin, have features that block malicious scripts and warn you about suspicious redirects. - **Keep your browser updated.** Security patches often address new attack vectors. - **Educate your team.** If you manage multiple profiles, make sure everyone knows the risks. ### The Bottom Line This isn't just another phishing scam. It's a reminder that even trusted platforms like Google and Bing can be weaponized. For professionals who rely on antidetect browsers, staying vigilant is not optional. The next time you see an ad for a tool you use, think twice before clicking. Your digital fingerprint is worth more than a convenient download. Stay safe out there, and remember: if it looks too good to be true, it probably is.