Fake Pudgy World site steals your crypto passwords

2026-03-17T20:52:00Z07da14b5a743126bf510f5e5989edea7ba44f836150f309395903978c0d61e13
Vidaractive-exploitandroid-vulnerabilityav-evasioncalendar-scamchrome-zero-dayclickfixcoruna-exploit-kitcrypto-phishingimpersonationinfostealeripv6-phishingmalicious-wordpressmicrosoft-authenticatorpatchingphishingseo-poisoningsextortionzombie-zip

What happened

A batch of Malwarebytes posts (March 2026) highlights active phishing and malware campaigns and multiple actively exploited vulnerabilities. Notable items: crypto-themed phishing sites (fake Pudgy World, Temu airdrop) and impersonation/calendar scams that trick users into revealing credentials or running malware (ClickFix trick); hacked WordPress sites serving Vidar infostealer via fake “verify you are human” pages; SEO-poisoning lures that deliver fake VPN installers to harvest corporate logins; an AV-evasion technique dubbed “Zombie ZIP” that can bypass initial scans; and several actively-pw

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
malwarebytes_labs
Record identifier
07da14b5a743126bf510f5e5989edea7ba44f836150f309395903978c0d61e13
Enrichment time
2026-03-17T20:52:00Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · Fake Pudgy World site steals your crypto passwords · Baitaphish