:

FBI DIRECTOR'S APPAREL SITE HOSTS MALWARE ATTACK

SECURITY DESK1 MIN READ
SAT, MAY 23, 2026

■ AI-SUMMARIZED FROM 1 SOURCE ▸ TIMELINE

The Based Apparel website linked to FBI Director Kash Patel has been identified hosting a ClickFix malware attack, attempting to trick visitors into installing malicious software.

Security researchers discovered the attack vector on the e-commerce site, which uses social engineering tactics common to ClickFix campaigns. These attacks typically display fake system warnings or update prompts, deceiving users into downloading malware. ClickFix attacks have become increasingly prevalent in 2024, targeting Windows users through compromised websites and malicious ads. The malware often leads to ransomware infections or credential theft. The discovery raises questions about website security practices and third-party vulnerabilities. It's unclear whether the attack represents a compromise of the site's infrastructure or a supply chain issue. Based Apparel sells merchandise featuring political messaging. The incident highlights how high-profile websites remain attractive targets for attackers seeking to distribute malware at scale. No statement has been issued regarding the attack or remediation efforts.

■ SOURCES

Hacker News

■ SUMMARY WRITTEN BY AI FROM THE LINKS ABOVE

■ MORE FROM THE SECURITY DESK

A newly launched dark web marketplace is selling digital scans of over 153 million driver's licenses from U.S. and Canadian residents. The FBI's New Orleans field office has opened an investigation into the breach, which appears to originate from a Louisiana-based identity verification company.

5H AGOSecurity Desk

Five Venezuelan nationals have pleaded guilty to conducting ATM jackpotting attacks across the United States, using malware to extract cash from automated teller machines.

6H AGOIndustry Desk

Hackers infiltrated thousands of Dropbox accounts last month, accessing and downloading user files stored on the cloud platform. The company confirmed the breach in a statement reviewed by Bloomberg News.

6H AGOSecurity Desk

Threat actors are leveraging the legitimate Faronics Deploy endpoint-management platform to gain administrative control over targeted computers and install ScreenConnect remote support software.

7H AGOSecurity Desk

■ SUBSCRIBE TO THE DAILY BRIEF

ONE EMAIL, 5 STORIES, 06:00 UTC. UNSUBSCRIBE ANYTIME.