Connect with us

Technology

Fake error popups are spreading malware fast

Published

on

Fake error popups are spreading malware fast

NEWYou can now listen to Fox News articles!

A dangerous cybercrime tool has surfaced in underground forums, making it far easier for attackers to spread malware. 

Instead of relying on hidden downloads, this tool pushes fake error messages that pressure you into fixing problems that never existed. Security researchers say this method is spreading quickly because it feels legitimate. The page looks broken. The warning feels urgent. The fix sounds simple. 

That combination is proving alarmingly effective for cybercriminals.

Sign up for my FREE CyberGuy Report
Get my best tech tips, urgent security alerts and exclusive deals delivered straight to your inbox. Plus, you’ll get instant access to my Ultimate Scam Survival Guide – free when you join my CYBERGUY.COM newsletter.

Advertisement

How fake error malware attacks actually work

These attacks begin with a compromised website. When a visitor lands on the page, something looks wrong right away. Text appears broken. Fonts look scrambled. Visual elements seem corrupted. A pop-up then appears claiming the issue can be fixed with a browser update or a missing system font. A button offers to repair the problem instantly. 

Clicking that button copies a command to the clipboard and displays instructions to paste it into PowerShell or a system terminal. That single step launches the infection.

MALICIOUS CHROME EXTENSIONS CAUGHT STEALING SENSITIVE DATA

Fake error popups make a website look broken by scrambling text or fonts to create urgency and panic. (Jens Büttner/picture alliance via Getty Images)

Why this new tool changes the threat landscape

The tool behind these attacks is called ErrTraffic. It automates the entire process and removes the technical barriers that once limited cybercrime operations. For about $800, attackers get a full package with a control panel and scripted payload delivery. Analysts at the Hudson Rock Threat Intelligence Team identified the tool after tracking its promotion on Russian-language forums in early December 2025. 

Advertisement

ErrTraffic works through a simple JavaScript injection. A single line of code connects a hacked site to the attacker’s dashboard. From there, everything adapts automatically. The script detects the operating system and browser. It then displays a customized fake error message in the correct language. The attack works across Windows, Android, macOS and Linux.

MOST PARKED DOMAINS NOW PUSH SCAMS AND MALWARE

The popups often claim a browser update or missing system font is needed to fix the problem. (Daniel Acker/Bloomberg via Getty Images)

Why security software struggles to stop it

Traditional malware defenses look for suspicious downloads or unauthorized installations. ErrTraffic avoids both. Browsers see normal text copying. Security tools see a legitimate system utility being opened manually. Nothing appears out of place. That design allows the attack to slip through protections that would normally stop malware in its tracks.

The success rate is deeply concerning

Data pulled from active ErrTraffic campaigns shows conversion rates approaching 60%. That means more than half of the visitors who see the fake error message follow the instructions and install malware. Once active, the tool can deliver infostealers like Lumma or Vidar on Windows devices. Android targets often receive banking trojans instead. The control panel even includes geographic filtering, with built-in blocks for Russia and neighboring regions to avoid drawing attention from local authorities.

Advertisement

What happens after infection?

Once malware is installed, credentials and session data are stolen. Those compromised logins are then used to breach additional websites. Each newly hacked site becomes another delivery vehicle for the same attack. That cycle allows the campaign to grow without direct involvement from the original operator.

FAKE WINDOWS UPDATE PUSHES MALWARE IN NEW CLICKFIX ATTACK

Following the on-screen instructions can quietly trigger malware that steals passwords and personal data. (Kurt Knutsson)

Ways to stay safe from fake error malware

A few smart habits can significantly reduce risk when facing fake error pop-ups and browser-based traps.

1) Never run commands suggested by a website

Legitimate websites never ask you to copy and paste commands into PowerShell or a system terminal. Fake error malware relies on convincing messages that pressure you into doing exactly that. If a page instructs you to run code to fix a problem, close it immediately.

Advertisement

2) Close pages that claim your system is corrupted

Fake error campaigns often use broken text, scrambled fonts or warnings about missing files to grab attention. As a result, these visuals create urgency and trigger fear. In reality, a real system problem never announces itself through a random website, so close the page right away.

3) Install updates only through official system settings

Real browser and operating system updates come from built-in update tools, not pop-ups on websites. If an update is needed, your device will notify you directly through system settings or trusted app stores.

4) Install strong antivirus software on every device

Strong antivirus software can help block malicious scripts, detect infostealers and stop suspicious behavior before damage spreads. This is especially important since fake error malware targets Windows, Android, macOS and Linux systems.

The best way to safeguard yourself from malicious links that install malware, potentially accessing your private information, is to have strong antivirus software installed on all your devices. This protection can also alert you to phishing emails and ransomware scams, keeping your personal information and digital assets safe.

Get my picks for the best 2025 antivirus protection winners for your Windows, Mac, Android and iOS devices at Cyberguy.com.

Advertisement

5) Use a data removal service to reduce exposure

Stolen credentials fuel the spread of fake error malware. Removing personal information from data broker sites can reduce the impact if login details are compromised and limit how far an attack can spread.

While no service can guarantee the complete removal of your data from the internet, a data removal service is really a smart choice. They aren’t cheap, and neither is your privacy. These services do all the work for you by actively monitoring and systematically erasing your personal information from hundreds of websites. It’s what gives me peace of mind and has proven to be the most effective way to erase your personal data from the internet. By limiting the information available, you reduce the risk of scammers cross-referencing data from breaches with information they might find on the dark web, making it harder for them to target you.

Check out my top picks for data removal services and get a free scan to find out if your personal information is already out on the web by visiting Cyberguy.com.

Get a free scan to find out if your personal information is already out on the web: Cyberguy.com.

6) Treat font and browser update pop-ups with suspicion

Claims about missing fonts or outdated browsers are a hallmark of these attacks. Modern systems manage fonts automatically, and browsers update themselves. A webpage has no reason to request manual fixes.

Advertisement

If a real update is needed, the operating system will request it directly. A random webpage never should.

Kurt’s key takeaways 

Fake error malware works because it plays on a very human reaction. When something on a screen suddenly looks broken, most people want to fix it fast and move on. That split-second decision is exactly what attackers are counting on. Tools like ErrTraffic show how polished these scams have become. The messages look professional. The instructions feel routine. Nothing about the moment screams danger. But behind the scenes, one click can quietly hand over passwords, banking access and personal data. The good news is that slowing down makes a real difference. Closing a suspicious page and trusting built-in system updates can stop these attacks cold. When it comes to pop-ups claiming your device is broken, walking away is often the smartest fix.

Have you ever seen a pop-up or error message that made you stop and wonder if it was real? Tell us what it looked like and how you handled it by writing to us at Cyberguy.com.

CLICK HERE TO DOWNLOAD THE FOX NEWS APP

Sign up for my FREE CyberGuy Report 
Get my best tech tips, urgent security alerts and exclusive deals delivered straight to your inbox. Plus, you’ll get instant access to my Ultimate Scam Survival Guide – free when you join my CYBERGUY.COM newsletter. 

Advertisement

Copyright 2025 CyberGuy.com. All rights reserved.

Technology

Asus chases Elgato with its own secondary touchscreen display

Published

on

Asus chases Elgato with its own secondary touchscreen display

Asus’s latest gaming monitor is a little smaller than usual. The ROG Strix XG129C, announced on Friday, is a 12.3-inch touchscreen IPS display that’s intended to be a sidekick for a larger main monitor, similar to the 14.1-inch secondary display in the 2020 Asus ROG Zephyrus Duo 15. It’s a slightly smaller competitor to Corsair’s Xeneon Edge, which has a 14.5-inch display, but the same 720p resolution.

Asus says the XG129C covers 125 percent of the sRGB color gamut and 90 percent of the DCI-P3 color gamut. It also comes with a one-year subscription for the hardware monitoring tool AIDA64 Extreme, which would usually cost $65. Besides acting as a performance monitor for your PC, sidekick displays like this can also be handy as an extension for streaming or editing setups, much like Elgato’s Stream Deck.

Along with the little XG129C, Asus also announced the ROG Strix OLED XG34WCDMS, a 34-inch RGB Tandem QD-OLED gaming monitor. It features a 280Hz refresh rate and a 3440 x 1440p resolution, and, according to Asus, covers 99 percent of the DCI-P3 color gamut. Asus has not yet officially announced pricing for either display.

Continue Reading

Technology

Fox News AI Newsletter: How Disney fans will experience AI

Published

on

Fox News AI Newsletter: How Disney fans will experience AI

NEWYou can now listen to Fox News articles!

 

Welcome to Fox News’ Artificial Intelligence newsletter with the latest AI technology advancements.

IN TODAY’S NEWSLETTER:

— Disney CEO unveils entertainment giant’s new 3-pillar growth plan

— Warning about AI-driven bank account hacks

Advertisement

— Inside China’s AI ‘wolf pack’ drones built with Taiwan conflict in mind

CUSTOMER FOCUS: Disney CEO unveils entertainment giant’s new 3-pillar growth plan – New Disney CEO Josh D’Amaro outlined a new growth strategy for the entertainment giant as the company announced its quarterly results, which includes a focus on investing in content as well as technology.

TECH CHECK: Trump admin to review AI models from Google, Microsoft, xAI ahead of public release – The Trump administration is preparing to review new artificial intelligence models from major tech companies like Google, Microsoft and xAI ahead of their public releases to ensure safety and regulatory compliance.

EVOLVING THREAT: Treasury Secretary Bessent warns Americans about AI-driven bank account hacks as threats rapidly evolve – Treasury Secretary Bessent is warning Americans about the growing danger of artificial intelligence-driven bank account hacks.

‘GOLDILOCKS’: IBM CEO Arvind Krishna warns Washington must find middle ground on AI regulation – IBM CEO Arvind Krishna is issuing a strong warning to Washington lawmakers, arguing that they must find a “Goldilocks” middle ground regarding artificial intelligence regulation to carefully balance industry innovation with consumer safety.

Advertisement

MACHINE WARFARE: Inside China’s AI ‘wolf pack’ drones built with Taiwan conflict in mind – China is developing AI-enabled robotic “wolf packs” designed to scout, supply and potentially support combat operations alongside troops in a future war — including a possible invasion of Taiwan — according to a new report.

FDD report warns China is preparing to reimagine warfare with its ‘robot wolf.’ (VCG/VCG via Getty Images)

HIDDEN RISKS: AI exposes US military supply chain tied to China – Fox Business media coverage highlights a concerning new analysis showing how artificial intelligence has exposed major hidden risks and critical vulnerabilities within the United States military supply chain that are directly tied to China.

RED LINE: China blocks Meta AI deal over security concerns – China blocked a major artificial intelligence deal involving tech giant Meta, with the government citing ongoing national security concerns over the advanced technology integration.

‘ART’IFICIAL IDEAS: How AI exposure is reshaping jobs in creative fields – Fox Business explores the significant workplace shifts currently underway in the technology sector, detailing exactly how growing artificial intelligence exposure is fundamentally reshaping roles and expectations across various creative fields.

Advertisement

JUST LIKE US: Former LSU coach Brian Kelly uses AI to prepare for job interviews – Former LSU football coach Brian Kelly is reportedly using artificial intelligence to help prepare for upcoming job interviews, proving he faces the same modern challenges as the rest of the workforce.

DIGITAL DEXTERITY: New AI ‘brain’ lets robots move like humans – Engineers and researchers have successfully developed a groundbreaking new artificial intelligence “brain” that allows advanced robots to move, learn and navigate their environments much more seamlessly like actual humans.

Genesis AI says its robotic hand can learn from human motion data to complete detailed, multistep tasks such as cooking an omelet. (Genesis AI)

FINANCIAL PROPOSITION: Bay Area banker wants to swap his $8M estate for AI company stock – A Bay Area banker wants to swap his luxurious $8 million real estate property entirely for valuable stock in a booming artificial intelligence company.

Subscribe now to get the Fox News Artificial Intelligence Newsletter in your inbox.

FOLLOW FOX NEWS ON SOCIAL MEDIA

Advertisement

Facebook

Instagram

YouTube

X

LinkedIn

Advertisement

SIGN UP FOR OUR OTHER NEWSLETTERS

Fox News First

Fox News Opinion

Fox News Lifestyle

Fox News Health

Advertisement

DOWNLOAD OUR APPS

Fox News

Fox Business

Fox Weather

Fox Sports

Advertisement

Tubi

WATCH FOX NEWS ONLINE

Fox News Go

STREAM FOX NATION

Fox Nation

Advertisement

Stay up to date on the latest AI technology advancements and learn about the challenges and opportunities AI presents now and for the future with Fox News here.

Advertisement
Continue Reading

Technology

The Steam Controller’s reservation queue is open

Published

on

The Steam Controller’s reservation queue is open

After quickly selling out of the Steam Controller on May 4th, Valve has launched a reservation system to ensure that you can get one without too much hassle. You may not get one as quickly as you’d like to, but at least you can now easily reserve the $99 controller.

If your Steam account is in good standing, and you’ve purchased something on the account before April 27th of this year, you’ll be able to reserve one. Essentially, this will hold your place in line for future restocks. Once a controller is available for you, you’ll get an email prompting you to purchase. You’ll have 72 hours to purchase your Steam Controller before it gets offered to the next person in the queue.

Ahead of its launch, Valve told The Verge that it had significant supply ready for its debut, but it didn’t know exactly how much demand there would be for the controller. Clearly, there wasn’t enough stock to meet demand. But at least now you’re able to join the line to get one instead of hoping you’ll be among the first to buy from a restock.

Continue Reading
Advertisement

Trending