Public Google API keys can be used to expose Gemini AI data
2026-03-04T21:19:13Z•b0e4b68385414bcb3a9cafe4277ee30b5bf3a3a53bb6c112da051486d97ad851
AI data exposureAI-generated passwordsAvast impersonationConduent breachFacebook ads malwareGeminiGoogle API keysOpenClawPII exposurePersona frontend exposureTeramindValleyRATZoom/Meet scamsage verificationbrowser RATcredit-card theftcrypto wallet theftdata breachfake Google security checkpassword manager riskspassword stealersprivacy regulatorsrefund scamsurveillance softwaretyposquat
What happened
A Malwarebytes Labs roundup (Feb 19–27, 2026) covering multiple high-risk incidents and research: public Google API keys can be abused to access Gemini AI data; a fake Google security check can escalate into a browser RAT harvesting contacts, location and more; fake Zoom/Google Meet pages are being used to silently install legitimate monitoring tools (Teramind) and ValleyRAT; a fake Avast refund site harvests full credit-card details; Facebook ads distribute fake Windows 11 downloads that install password- and wallet-stealing malware; a third‑party Conduent breach has expanded to ~25 million U
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- malwarebytes_labs
- Record identifier
- b0e4b68385414bcb3a9cafe4277ee30b5bf3a3a53bb6c112da051486d97ad851
- Enrichment time
- 2026-03-04T21:19:13Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.