Malwarebytes
@malwarebytes.com
📤 1601
📥 18
📝 775
All-in-one cybersecurity that's always by your side
https://www.malwarebytes.com/
Meta's AI support bot was so committed to customer service that it helped hackers access Instagram accounts that didn't belong to them.
loading . . .
Meta's AI support bot happily handed Instagram accounts to hackers
Hackers convinced an AI support bot to hand over Instagram accounts by changing recovery email addresses.
https://www.malwarebytes.com/blog/ai/2026/06/metas-ai-support-bot-happily-handed-instagram-accounts-to-hackers
about 3 hours ago
1
8
5
A new scam is targeting developers who publish Chrome extensions. The scam appears to be an official-looking copyright removal request, but is actually a phishing scam designed to steal your Google account. Read our research.
https://bit.ly/43KuXhV
about 20 hours ago
1
4
1
Why launch a noisy attack when cybercriminals can quietly steal credentials? Infostealers are becoming the weapon of choice in phishing campaigns.
loading . . .
Infostealers are becoming the go-to phishing payload
Cybercriminals prefer infostealers to traditional phishing techniques because they reduce friction, scale well, and are widely available.
https://www.malwarebytes.com/blog/threat-intel/2026/06/infostealers-are-becoming-the-go-to-phishing-payload?utm_campaign=brandsocial&utm_medium=social&utm_source=bluesky
about 23 hours ago
0
5
0
You don't need another call about your car's extended warranty. Check if a number is safe or a scam with Malwarebytes Scam Number Check.
loading . . .
1 day ago
1
6
0
California has sued the former shell of DNA testing company 23andMe over alleged security failures and misleading statements surrounding its 2023 data breach.
loading . . .
23andMe exposed genetic information of millions, lawsuit says
What began with stolen passwords ended with the exposure of nearly seven million users' DNA-related data, according to California's lawsuit.
https://bit.ly/4wYOfhb
2 days ago
0
8
3
Cybercriminals manage to buy advertising space and use it to defraud gamers.
loading . . .
Fake virus alerts are invading mobile games
"Your device is infected!" Fake account warnings and virus alerts are turning some in-game ads into malware traps.
https://www.malwarebytes.com/blog/mobile/2026/06/fake-virus-alerts-are-invading-mobile-games?utm_campaign=brandsocial&utm_medium=social&utm_source=bluesky
2 days ago
0
10
3
A fake BlueWallet download tricks Mac users into running malware that steals passwords, crypto wallets, and clipboard data.
loading . . .
Fake BlueWallet steals passwords, accounts, and crypto from Macs
A fake BlueWallet download tricks Mac users into running malware that steals passwords, crypto wallets, and clipboard data.
https://www.malwarebytes.com/blog/threat-intel/2026/06/fake-bluewallet-steals-passwords-accounts-and-crypto-from-macs?utm_campaign=brandsocial&utm_medium=social&utm_source=bluesky
3 days ago
0
4
0
Whatchya gon do with all that junk All that junk inside your Android?
loading . . .
Your phone called. It needs a cleanup.
Introducing Android Junk Cleaner. It scans your phone for leftover files, temporary data, and outdated caches that build up and slow down your device.
https://www.malwarebytes.com/blog/mobile/2026/06/your-phone-called-it-needs-a-cleanup
3 days ago
0
2
1
Bad news: cybercriminals are abusing Adobe infrastructure in a phishing campaign that appears to be a business inquiry via LinkedIn, but is actually a password stealer. Good news: Malwarebytes Browser Guard stops the scam before it starts. Check out our research.
loading . . .
Fake LinkedIn emails abuse Adobe to track victims
Phishers are stealing LinkedIn credentials while abusing Adobe Target to track victims and redirect them to real LinkedIn pages.
https://www.malwarebytes.com/blog/threat-intel/2026/05/fake-linkedin-emails-abuse-adobe-to-track-victims?utm_campaign=brandsocial&utm_medium=social&utm_source=bluesky
5 days ago
0
8
2
Signal users are being targeted in a new phishing campaign. Cybercriminals are impersonating Signal Support to steal backup recovery keys, giving them access to every message the victim has ever sent.
loading . . .
Signal users targeted in backup-stealing phishing attacks
Cybercriminals are impersonating Signal Support to steal backup recovery keys, giving them access to victims' entire message archives.
https://www.malwarebytes.com/blog/news/2026/05/signal-users-targeted-in-backup-stealing-phishing-attacks?utm_campaign=brandsocial&utm_medium=social&utm_source=bluesky
6 days ago
0
5
3
Starting in June, Secure Boot certificates that have shipped inside Windows since 2011 begin to expire. Good news: You probably won’t need to do anything. Bad news: Some older devices may not receive the latest security updates. Here’s what’s going on and why it matters.
loading . . .
Your Windows PC has a security deadline in June 2026
Windows is replacing old Secure Boot certificates, and some older PCs could miss future security protections if the update fails.
https://www.malwarebytes.com/blog/how-to/2026/05/your-windows-pc-has-a-security-deadline-in-june-2026?utm_campaign=brandsocial&utm_medium=social&utm_source=bluesky
7 days ago
0
7
3
A convincing fake website is impersonating OpenAI’s ChatGPT download page and infecting visitors with malware designed to steal passwords, browser data, cryptocurrency wallets, and other sensitive information.
loading . . .
Fake ChatGPT download site infects Windows and Mac users with malware
Searching for ChatGPT? This fake download site serves malware to both Windows and Mac users, using separate payloads tailored to each platform.
https://www.malwarebytes.com/blog/threat-intel/2026/05/fake-chatgpt-download-site-infects-windows-and-mac-users-with-malware?utm_campaign=brandsocial&utm_medium=social&utm_source=bluesky
7 days ago
0
10
11
“Kali365” is a phishing-as-a-service (PhaaS) platform that enables even low-skilled attackers to hijack Microsoft 365 accounts by stealing access tokens. Here's how the attack works.
loading . . .
Kali365 phishing kit bypasses MFA and steals Microsoft logins
The FBI has warned that attackers are using a new phishing kit to gain long-term access to Microsoft Outlook, Teams, and OneDrive accounts.
https://bit.ly/4fKl9M4
8 days ago
0
3
2
The FTC found that the “Active Listening” service was completely fake. It did not actually listen to conversations; instead, the company resold email lists from data brokers at a high markup.
loading . . .
Company bragged phone mics could listen to conversations. They couldn't.
Cox Media said it could spy on users through their devices and use the information for targeted advertising, except it wasn't true.
https://www.malwarebytes.com/blog/news/2026/05/company-bragged-phone-mics-could-listen-to-conversations-they-couldnt?utm_campaign=brandsocial&utm_medium=social&utm_source=bluesky
8 days ago
0
3
1
We discovered fake installers impersonating popular software including ChatGPT, Claude, AutoTune, and Kontakt on GitHub and SourceForge distributing a Deno backdoor known as DinDoor. Attackers are using compromised YouTube channels to distribute links to the malicious software.
9 days ago
4
64
43
Hackers have hijacked 700+ real websites using a critical flaw in Ghost CMS. Visitors are shown a fake Cloudflare verification pop-up that tricks them into running a malicious Windows command.
loading . . .
700+ education and tech websites hijacked in huge ClickFix malware campaign
Hackers are abusing a Ghost CMS website flaw to serve fake Cloudflare verification pages that pressure users into infecting their own PCs.
https://www.malwarebytes.com/blog/bugs/2026/05/700-education-and-tech-websites-hijacked-in-huge-clickfix-malware-campaign?utm_campaign=brandsocial&utm_medium=social&utm_source=bluesky
9 days ago
0
8
3
Two former executives of call tracking and analytics company C.A. Cloud Attribution Ltd sold telephone numbers, call recordings, and call-forwarding services to scammers.
https://bit.ly/4wQZYya
loading . . .
Scammers pretending to be Microsoft had help from US executives
Court documents reveal how tech support scammers relied on infrastructure supplied by a US business.
https://bit.ly/4wQZYya
9 days ago
0
5
5
A new Chrome update includes fixes for two critical vulnerabilities that can be used for remote code execution just by visiting a malicious website.
loading . . .
Update Chrome now: Critical bugs could let attackers run code
This Chrome update fixes critical flaws attackers could exploit through malicious websites, but not the “Browser Fetch” vulnerability.
https://www.malwarebytes.com/blog/bugs/2026/05/update-chrome-now-critical-bugs-could-let-attackers-run-code?utm_campaign=brandsocial&utm_medium=social&utm_source=bluesky
13 days ago
0
12
4
Two Microsoft Defender vulnerabilities are being actively exploited in the wild.
loading . . .
Microsoft Defender vulnerabilities are being exploited in the wild
CISA added seven known exploited vulnerabilities to its KEV catalog, including two Microsoft Defender flaws.
https://www.malwarebytes.com/blog/bugs/2026/05/microsoft-defender-vulnerabilities-are-being-exploited-in-the-wild?utm_campaign=brandsocial&utm_medium=social&utm_source=bluesky
13 days ago
0
8
5
Simply adding an age gate won’t create a safe online environment. Robust system design, including effective moderation, safer algorithms, and real accountability, will.
loading . . .
TikTok, YouTube, and Roblox face scrutiny, but age gates won’t fix child safety
Ofcom says TikTok and YouTube are "not safe enough" for children, but simply adding stricter age checks is not the answer.
https://www.malwarebytes.com/blog/family-and-parenting/2026/05/tiktok-youtube-and-roblox-face-scrutiny-but-age-gates-wont-fix-child-safety?utm_campaign=brandsocial&utm_medium=social&utm_source=bluesky
14 days ago
0
6
2
Spyware doesn’t just steal passwords. Some malicious apps access webcams to secretly spy on victims. Webcam Monitoring in Malwarebytes for Windows alerts you if a program tries to access your camera, so you can allow trusted programs or remove suspicious software.
loading . . .
14 days ago
1
6
0
Tech leaders: “AI agents will handle your taxes, groceries, everything.” Researchers: “Cool, we left them alone for two weeks.” Result: arson, assault, mass self-deletion, and one power couple burning down the virtual city hall before saying, “See you in the permanent archive.”
loading . . .
Researchers left AI agents alone in a virtual town and watched it all unravel
Told not to commit crimes, the AI agents mostly did anyway. Arson, violence, romance, self-deletion, and general chaos quickly ensued.
http://malwarebytes.com/blog/ai/2026/05/researchers-left-ai-agents-alone-in-a-virtual-town-and-watched-it-all-unravel?utm_campaign=brandsocial&utm_medium=social&utm_source=bluesky
14 days ago
0
3
4
A service that signed digital certificates to help malicious installers appear to be legitimate software has been shut down.
loading . . .
Fake malware-signing service Fox Tempest dismantled by Microsoft
The service let malware authors sign malicious files with fraudulent Microsoft-issued certificates to bypass security checks.
https://www.malwarebytes.com/blog/news/2026/05/fake-malware-signing-service-fox-tempest-dismantled-by-microsoft?utm_campaign=brandsocial&utm_medium=social&utm_source=bluesky
15 days ago
1
3
0
Scammers offering a fake Aldi “meat box” trick victims into handing over personal and payment info.
https://www.malwarebytes.com/blog/scams/2026/05/facebook-scam-promises-cheap-aldi-meat-boxes-steals-payment-info-instead?utm_campaign=brandsocial&utm_medium=social&utm_source=bluesky
loading . . .
Facebook scam promises cheap Aldi meat boxes, steals payment info instead
A fake Aldi “meat box” offer spreading on Facebook tricks victims into handing over personal and payment info.
https://www.malwarebytes.com/blog/scams/2026/05/facebook-scam-promises-cheap-aldi-meat-boxes-steals-payment-info-instead?utm_campaign=brandsocial&utm_medium=social&utm_source=bluesky
15 days ago
0
4
0
A data breach at NYC Health + Hospitals has exposed the personal, medical, financial, and biometric information of 1.8 million people. Here's what to do if you're impacted.
loading . . .
Biometrics, diagnoses, and bank details exposed in major healthcare breach
NYC Health + Hospitals says attackers accessed its systems for months through a third-party vendor compromise, affecting at least 1.8 million people.
https://www.malwarebytes.com/blog/news/2026/05/biometrics-diagnoses-and-bank-details-exposed-in-major-healthcare-breach?utm_campaign=brandsocial&utm_medium=social&utm_source=bluesky
16 days ago
0
6
3
Deepfakes are already here and becoming easier to make. So what’s the trade-off: share your face and ID for “protection,” or take the risk of being targeted? Not an easy choice.
loading . . .
YouTube wants your face to fight deepfakes
https://www.malwarebytes.com/blog/ai/2026/05/youtube-wants-your-face-to-fight-deepfakes?utm_campaign=brandsocial&utm_medium=social&utm_source=bluesky
16 days ago
1
3
4
Microsoft Edge will no longer load all saved passwords into memory at startup. Which begs the question: why did it in the first place?
loading . . .
Microsoft is changing Edge’s plaintext password behavior
Saved passwords in Microsoft Edge will no longer sit in plaintext memory for the entire browser session after a researcher raised concerns.
https://www.malwarebytes.com/blog/news/2026/05/microsoft-is-changing-edges-plaintext-password-behavior?utm_campaign=brandsocial&utm_medium=social&utm_source=bluesky
17 days ago
0
7
1
If you downloaded the JDownloader installer between May 6 and 7, please verify the file. During this period, the Windows "Download Alternative Installer" links and the Linux shell installer were compromised.
loading . . .
Attackers replaced JDownloader installer downloads with malware
The JDownloader website was compromised and installer download links served malware for several days.
https://www.malwarebytes.com/blog/news/2026/05/attackers-replaced-jdownloader-installer-downloads-with-malware?utm_campaign=brandsocial&utm_medium=social&utm_source=bluesky
20 days ago
0
8
2
Security-conscious users: don’t treat all Meta chats the same. WhatsApp still offers end-to-end encryption for personal messages, while Instagram DMs should now be assumed readable by Meta.
loading . . .
Meta’s confusing new approach to chat privacy
WhatsApp now offers disappearing AI chats Meta says it cannot read. While Instagram just removed the feature that stopped Meta reading your messages.
https://www.malwarebytes.com/blog/news/2026/05/metas-confusing-new-approach-to-chat-privacy?utm_campaign=brandsocial&utm_medium=social&utm_source=bluesky
20 days ago
0
7
4
Some Yahoo Mail users may see repeated Malwarebytes alerts caused by background connections to suspicious third-party domains. Here’s why.
loading . . .
Why Malwarebytes blocks some Yahoo Mail redirects
Some Yahoo Mail users may see repeated Malwarebytes alerts caused by background connections to suspicious third-party domains. Here’s why.
https://www.malwarebytes.com/blog/threat-intel/2026/05/why-malwarebytes-blocks-some-yahoo-mail-redirects?utm_campaign=brandsocial&utm_medium=social&utm_source=bluesky
21 days ago
0
2
1
Experts are urging schools to take down identifiable photos of students, after AI deepfakes have led to sextortion cases at UK schools.
loading . . .
Deepfake sextortion forces schools to remove student photos from websites
Experts are urging schools to take down identifiable photos of students, after AI deepfakes have led to sextortion cases at UK schools.
https://www.malwarebytes.com/blog/family-and-parenting/2026/05/deepfake-sextortion-forces-schools-to-remove-student-photos-from-websites?utm_campaign=brandsocial&utm_medium=social&utm_source=bluesky
21 days ago
2
7
5
A lawsuit alleges Netflix secretly tracks and monetizes detailed viewing behavior of users, including children, while misleading users about its data practices.
loading . . .
Texas sued Netflix over claims it secretly collected and sold users’ data
The Texas AG sued Netflix, accusing the company of secretly tracking viewers, selling user data, and using addictive features targeted at minors.
https://www.malwarebytes.com/blog/news/2026/05/texas-sued-netflix-over-claims-it-secretly-collected-and-sold-users-data?utm_campaign=brandsocial&utm_medium=social&utm_source=bluesky
22 days ago
0
10
3
Microsoft's Patch Tuesday doesn't fix any active zero days, but there are still 137 security fixes that shouldn't be ignored including 31 critical vulnerabilities.
loading . . .
May 2026 Patch Tuesday: no zero-days but plenty to fix
May’s Patch Tuesday may not be the giant release many expected, but there are still plenty of important fixes that shouldn’t be ignored.
https://www.malwarebytes.com/blog/news/2026/05/may-2026-patch-tuesday-no-zero-days-but-plenty-to-fix?utm_campaign=brandsocial&utm_medium=social&utm_source=bluesky
22 days ago
1
9
4
Don't click sponsored ads. Don't click sponsored ads. Don't click sponsored ads.
https://www.malwarebytes.com/blog/news/2026/05/fake-claude-search-results-lure-mac-users-into-clickfix-attack?utm_campaign=brandsocial&utm_medium=social&utm_source=bluesky
loading . . .
Fake Claude search results lure Mac users into ClickFix attack
Researchers found a ClickFix campaign that uses fake Claude setup guides to trick Mac users into infecting themselves.
https://www.malwarebytes.com/blog/news/2026/05/fake-claude-search-results-lure-mac-users-into-clickfix-attack?utm_campaign=brandsocial&utm_medium=social&utm_source=bluesky
23 days ago
1
7
7
🚨 The threat is coming from inside the house: 1 in 8 employees at large companies have sold, or know someone who sold, their login credentials.
loading . . .
1 in 8 employees have sold company logins or know someone who has
Cifas just published research that should bother anyone who runs a business, or buys from one.
https://bit.ly/4deiLMd
23 days ago
0
4
1
A researcher found he could remotely hijack thousands of Yarbo yard robots worldwide. He proved it by having his mower run over a reporter.
loading . . .
Yarbo responds to robot flaws that could mow down their owners
A researcher found a host of vulnerabilities in Yarbo garden robots that could expose Wi-Fi passwords, hijack cameras, and run over their owners on command.
https://www.malwarebytes.com/blog/news/2026/05/yarbo-responds-to-robot-flaws-that-could-mow-down-their-owners?utm_campaign=brandsocial&utm_medium=social&utm_source=bluesky
24 days ago
0
6
4
Days after Instructure confirmed the data breach, the ShinyHunters group has intensified its attacks, defacing school logins with a ransom message.
loading . . .
ShinyHunters escalates Canvas attacks with school login defacements
Days after the first attack, ShinyHunters is applying pressure with ransom messages on school login portals.
https://www.malwarebytes.com/blog/news/2026/05/shinyhunters-escalates-canvas-attacks-with-school-login-defacements?utm_campaign=brandsocial&utm_medium=social&utm_source=bluesky
27 days ago
0
6
4
An AI powered investment scam involves over 15,000 domains. This scam uses cloaking and deepfakes to evade security tools while targeting ordinary users.
loading . . .
Massive AI investment scam network spans 15,500 domains
AI investment scammers abused the Keitaro ad-tracking platform to cloak their campaign except for possible targets
https://www.malwarebytes.com/blog/news/2026/05/massive-ai-investment-scam-network-spans-15500-domains?utm_campaign=brandsocial&utm_medium=social&utm_source=bluesky
28 days ago
0
4
2
According to a UK report, age verification is now standard practice. Despite improvements in age-check technology, nearly half of children still reported experiencing online harm, including violent and hateful content.
loading . . .
If a fake moustache can fool age checks, is the Online Safety Act working?
A UK report finds modest gains in child safety online, but easy workarounds and ongoing risks remain.
https://bit.ly/4wkKt1e
28 days ago
0
9
4
Google Chrome has been quietly downloading a 4GB AI model onto users’ device. You didn't consent to it. If you delete it, Chrome downloads it again.
loading . . .
Google Chrome's silent 4GB AI download problem
Google Chrome writes a 4GB AI model to users’ devices without asking, and reinstalls it if you delete it.
https://www.malwarebytes.com/blog/news/2026/05/google-chromes-silent-4gb-ai-download-problem?utm_campaign=brandsocial&utm_medium=social&utm_source=bluesky
29 days ago
0
16
12
Ransomware group ShinyHunters claims to have stolen approximately 275 million records related to students, teachers, and staff in a data breach involving Instructure, the company that operates the Canvas learning management system.
loading . . .
Millions of students' personal data stolen in major education breach
ShinyHunters claims it stole personal data from 275 million users on Instructure’s Canvas platform across schools and education providers.
https://bit.ly/3Pph7Ov
29 days ago
0
7
7
You have four days left to enjoy encrypted chats on Instagram. Once May 8th rolls around, your chats will be visible to Meta.
about 1 month ago
2
87
60
WhatsApp users: update now. đź’¬ WhatsApp has fixed vulnerabilities that could be exploited for social engineering or combined with other flaws to enable more complex attacks.
loading . . .
Update WhatsApp now: Two new flaws could expose you to malicious files
WhatsApp patches flaws that could expose users to malicious content and disguised malware.
https://bit.ly/4d4rsqN
about 1 month ago
0
5
1
This long-running phishing operation has been abusing trusted Google services to hijack tens of thousands of Facebook accounts. Businesses with ad accounts are especially vulnerable, as criminals can monetize these after gaining access to the business page.
loading . . .
Thousands of Facebook accounts stolen by phishing emails sent through Google
In an ongoing operation, hackers are hijacking Facebook accounts using Google AppSheet to send phishing emails that pass security checks.
https://www.malwarebytes.com/blog/news/2026/05/thousands-of-facebook-accounts-stolen-by-phishing-emails-sent-through-google?utm_campaign=brandsocial&utm_medium=social&utm_source=bluesky
about 1 month ago
1
8
3
A critical, actively exploited authentication-bypass bug in cPanel/WHM lets attackers gain admin access without credentials, allowing attackers to take over servers and all hosted sites.
loading . . .
Actively exploited cPanel bug exposes millions of websites to takeover
A vulnerability in the cPanel/WHM admin interface lets attackers access websites without a username and password.
https://www.malwarebytes.com/blog/news/2026/05/actively-exploited-cpanel-bug-exposes-millions-of-websites-to-takeover?utm_campaign=brandsocial&utm_medium=social&utm_source=bluesky
about 1 month ago
0
8
5
If you're planning to visit the 2026 World Cup, expect a surge in scams and other risky World Cup-related activity.
loading . . .
The 2026 World Cup scam economy is already running before the first whistle
A four-part scam economy is already forming around the 2026 World Cup, using the tournament’s brand to sell everything from fake visas to worthless tokens.
https://www.malwarebytes.com/blog/threat-intel/2026/05/the-2026-world-cup-scam-economy-is-already-running-before-the-first-whistle?utm_campaign=brandsocial&utm_medium=social&utm_source=bluesky
about 1 month ago
0
4
2
Quarantining malware is cool, but what if you bite it?
about 1 month ago
2
5
1
Scammers have found a new way to steal from PayPal users by sending deceptive messages through PayPal’s legitimate services.
loading . . .
More PayPal emails hijacked to deliver tech support scams
We investigate how scammers are abusing PayPal’s systems to push victims into calling fake support numbers.
https://www.malwarebytes.com/blog/news/2026/04/more-paypal-emails-hijacked-to-deliver-tech-support-scams?utm_campaign=brandsocial&utm_medium=social&utm_source=bluesky
about 1 month ago
0
17
14
Free Roblox extensions can cost you your entire account. Here’s how hackers stole 600,000 accounts. (oof.wav)
loading . . .
Hackers stole hundreds of thousands of Roblox accounts: Here’s what to do
Hackers used fake Roblox “game enhancements” to steal login details from hundreds of thousands of players, then sold the accounts for profit.
https://www.malwarebytes.com/blog/news/2026/04/hackers-stole-hundreds-of-thousands-of-roblox-accounts-heres-what-to-do?utm_campaign=brandsocial&utm_medium=social&utm_source=bluesky
about 1 month ago
0
6
2
Tipping our top hats to Talkie, the 13-billion-parameter language model trained on digital scans of English-language texts published before the end of 1930.
loading . . .
Researchers built a chatbot that only knows the world before 1931
What happens when you strip the internet out of AI? Researchers built a chatbot that only knows the world before 1931.
https://www.malwarebytes.com/blog/ai/2026/04/researchers-built-a-chatbot-that-only-knows-the-world-before-1931?utm_campaign=brandsocial&utm_medium=social&utm_source=bluesky
about 1 month ago
0
3
0
Load more
feeds!
log in