Big Tech can stop scams. They just don’t (Lock and Code S07E08)
2026-04-20T20:51:59Z•54f1e38520f88efe873f3ce916ee8d17c74ae79d0f219d2dd85b3e2bb2aae773
AI abuseAdobe ReaderBooking.com breachClickFixOmnistealerPlugXPushpagandaRATcredential theftdata breachfraudinfostealermacOS infectionpatchesphishingremote access trojanscamstrojanized installerszero-day
What happened
Malwarebytes Labs (April 2026 feed) highlights multiple active and emerging threats: widespread scam campaigns (advance‑fee/Nigerian scams, iCloud/payment ruses, targeted ‘Credit Resources Vault’ emails, AI-driven Pushpaganda notification scams); phishing and credential theft (fake YouTube copyright notices stealing Google logins); multiple malware delivery vectors using trojanized installers and fake sites (trojanized Slack giving an invisible desktop, fake Claude site dropping PlugX, fake Proton VPN/gaming‑mod distributors delivering a Windows infostealer); a prolific infostealer/Omnistealer
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- malwarebytes_labs
- Record identifier
- 54f1e38520f88efe873f3ce916ee8d17c74ae79d0f219d2dd85b3e2bb2aae773
- Enrichment time
- 2026-04-20T20:51:59Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.