These convincing copyright notices are designed to steal Google logins

2026-06-03T08:51:46Z0d9aaf6f4b7ee4dd13c42b15356cf32f2162c28c7eef4f04ca905417ec61baea
adwarecredential theftcrypto theftdata breachexploited-vulnerabilitiesfake-downloadsmac-malwaremalwaremfa-bypassmobile-malwarephishingphishing-kitsupply-chain-abusethreat-intelwindows-malware

What happened

Malwarebytes Labs collected multiple active threats and incidents (May–Jun 2026): convincing copyright takedown scams and spoofed Google sign‑in pages targeting Chrome developers; Kali365 phishing kit that bypasses MFA to steal Microsoft logins; fake download sites (ChatGPT, BlueWallet) delivering Windows/Mac malware and crypto/credential stealers; fake in‑game virus alerts and ad‑based malware campaigns (ClickFix) pressuring users into self‑infection; Signal backup‑key phishing and other credential‑harvesting campaigns abusing Adobe/third‑party services; high‑impact data breaches (23andMe, ≈6

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
malwarebytes_labs
Record identifier
0d9aaf6f4b7ee4dd13c42b15356cf32f2162c28c7eef4f04ca905417ec61baea
Enrichment time
2026-06-03T08:51:46Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.