Apple’s Hide My Email doesn’t hide it very well
2026-07-02T20:51:52Z•10170ce1ef049ea85a1890363f8f4c4ab9a56af777f5e763c4092752c4f6ba65
ai-abuseapplechromeexploitffmpeginfostealerloadermalicious-extensionsmalwarephishingprivacyscamsthreat-intelvulnerabilitywinrar
What happened
Collection of Malwarebytes posts (late June–early July 2026) highlighting multiple high-impact software vulnerabilities and active abuse campaigns. Key themes: a critical FFmpeg (PixelSmash) flaw that can weaponize video files; a WinRAR vulnerability that may allow full system compromise; large Chrome security updates addressing many critical bugs; Apple’s “Hide My Email” privacy bypass reported but unpatched; and ongoing abuse campaigns using fake Google/Cloudflare verification pages (ClickFix) to distribute infostealers and a new loader. Additional coverage describes malicious browser/Edge/
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- malwarebytes_labs
- Record identifier
- 10170ce1ef049ea85a1890363f8f4c4ab9a56af777f5e763c4092752c4f6ba65
- Enrichment time
- 2026-07-02T20:51:52Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.