I searched for "Homebrew install". Clicked the first link. It looked exactly the same as the legit brew.sh. I was tired and didn't even think twice. Google wouldn't have put the scam clone website ahead of the real one, right?
When I clicked to copy the install command (which read exactly correct), I got the uBO message saying it blocked a ClickFix attack. Users who do that without protection would have the wrong URL on their clipboard, and likely install malware thinking they were getting upstream Homebrew.
Which one blocked the homebrew attack you mentioned? Because while I have a suspicion, knowing, and having it stated explicitly, is still good information to have
I think that implies mv3 does support it. Seeing as it can inject scripts, I don't see why it wouldn't be able to.