Travel scams are everywhere. Here’s how to avoid them
2026-06-04T20:51:52Z•451dc2e68f2e5e62b5168f993faf3f5465f5a9028f0bf4644402f479e0786323
ad-fraudbackup-theftcredential-theftcrypto-theftdata-breachdeno-ratfake-softwareinfostealermac-malwaremalwaremfa-bypassmobile-malwarephishingphishing-kitprivacyransomware-ratsocial-engineeringsupply-chain-abusethreat-intelwindows-malware
What happened
Collection of Malwarebytes Labs posts (late May–early June 2026) highlighting a surge in social‑engineering and malware campaigns: widespread travel and invoice scams, phishing kits (including Kali365) that bypass MFA, infostealers becoming the preferred phishing payload, fake download sites (ChatGPT, BlueWallet) delivering Windows/Mac malware and crypto stealers, Signal backup‑key phishing, fake in‑game virus alerts, and multiple large data‑exposures (23andMe, Carnival). Themes emphasize credential/backup theft, crypto theft, RATs (fake software/Deno RAT), and targeted abuse of support/Adobe/
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- malwarebytes_labs
- Record identifier
- 451dc2e68f2e5e62b5168f993faf3f5465f5a9028f0bf4644402f479e0786323
- Enrichment time
- 2026-06-04T20:51:52Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.