Watch out for fake Malwarebytes renewal notices in your calendar
2026-03-13T20:51:57Z•36427b5ae2778a168d8ea124d6144b72dc5114c47c08cfdf48144dbaac1e4f25
airdropsbackdoorbrowser-exploitcalendar-spamclickfixexploit-kitfake-updatesinfostealermfa-bypassmobile-vulnerabilitypatchesphishingremote-access-trojanrobocallscamssextortionsocial-engineeringsupply-chainzero-day
What happened
Malwarebytes Labs roundup (Mar 2026) — Multiple active threats and scams: fake Malwarebytes calendar renewal notices and tax-season robocalls impersonate vendors to trick victims; a $TEMU ClickFix airdrop scam installs a stealthy remote-access backdoor; fake installers and update pages (Claude Code, OpenClaw, Google Meet) spread infostealers or enroll Windows devices in attacker-managed device systems; phishing campaigns hide links using IPv6 tricks and reuse harvested passwords in sextortion emails; Signal/WhatsApp accounts are being hijacked via verification-code social engineering; Apple, &
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- malwarebytes_labs
- Record identifier
- 36427b5ae2778a168d8ea124d6144b72dc5114c47c08cfdf48144dbaac1e4f25
- Enrichment time
- 2026-03-13T20:51:57Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.