These convincing copyright notices are designed to steal Google logins
2026-06-03T08:51:46Z•0d9aaf6f4b7ee4dd13c42b15356cf32f2162c28c7eef4f04ca905417ec61baea
adwarecredential theftcrypto theftdata breachexploited-vulnerabilitiesfake-downloadsmac-malwaremalwaremfa-bypassmobile-malwarephishingphishing-kitsupply-chain-abusethreat-intelwindows-malware
What happened
Malwarebytes Labs collected multiple active threats and incidents (May–Jun 2026): convincing copyright takedown scams and spoofed Google sign‑in pages targeting Chrome developers; Kali365 phishing kit that bypasses MFA to steal Microsoft logins; fake download sites (ChatGPT, BlueWallet) delivering Windows/Mac malware and crypto/credential stealers; fake in‑game virus alerts and ad‑based malware campaigns (ClickFix) pressuring users into self‑infection; Signal backup‑key phishing and other credential‑harvesting campaigns abusing Adobe/third‑party services; high‑impact data breaches (23andMe, ≈6
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- malwarebytes_labs
- Record identifier
- 0d9aaf6f4b7ee4dd13c42b15356cf32f2162c28c7eef4f04ca905417ec61baea
- Enrichment time
- 2026-06-03T08:51:46Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.