
Episode #45
ClickFix: When a CAPTCHA Asks You to Run a Command
You came for a conference agenda, and the website wants proof you're human. ClickFix can hide behind that familiar check, with instructions that deserve a much closer look. Rich follows the moment a fake CAPTCHA, a test meant to distinguish people from automated visitors, changes what it asks you to do. Microsoft's August 2026 TerminalFix analysis provides a concrete example involving an imitation Cloudflare screen and commands pasted into Windows Terminal or PowerShell. CERT Polska's February 2026 investigation helps explain why a short command may conceal a longer chain of instructions. The Federal Trade Commission's June 2026 warning adds context to the difference between a website check and a request to operate your computer. If you've ever followed a screen's directions just to get back to your work, this conversation is for you. Plaintext with Rich also gives workplace leaders a useful way to think about awareness training that people can recognize in an ordinary browsing moment. One Topic, Ten minutes, No panic. Is there a topic/term you want me to discuss next? Text me!! YouTube more your speed? → https://links.sith2.com/YouTube Apple Podcasts your usual stop? → https://links.sith2.com/Apple Neither of those? Spotify’s over here → https://links.sith2.com/Spotify Prefer reading quietly at your own pace? → https://links.sith2.com/Blog Join us in The Cyber Sanctuary (no robes required) → https://links.sith2.com/Discord Follow the human behind the microphone → https://links.sith2.com/linkedin Need another way to reach me? That’s here → https://linktr.ee/rich.greene



