A week in security (March 9 – March 15)

2026-03-16T08:51:56Zc7f7695ed69ad3277e8ed90d2d209ed7fdab97556068999a69948d90166f763e
account takeoverandroid lockscreen exploitapple coruna exploit kitbrowser-notification abusecalendar phishingchrome zero-dayclickfixfake-update malwarefbi wiretapinfostealermicrosoft authenticatormicrosoft patch tuesdayphishing (IPv6 trick)remote-access backdoorsextortionsocial engineeringsupply-chain breachtemu airdrop

What happened

Malwarebytes Labs weekly roundup (Mar 9–15, 2026) covering multiple active threats and patching activity: Google released an out-of-band Chrome update for two zero-days under active exploitation; Microsoft’s March Patch Tuesday addressed 79 flaws including two zero-days; Apple issued fixes for older iOS/iPadOS against the Coruna exploit kit; researchers disclosed an Android lock-screen attack that can recover PINs and keys; Microsoft Authenticator had a code-leak bug on mobile. The bulletin also details several social-engineering and supply-chain incidents—fake Malwarebytes calendar renewal l¶

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
malwarebytes_labs
Record identifier
c7f7695ed69ad3277e8ed90d2d209ed7fdab97556068999a69948d90166f763e
Enrichment time
2026-03-16T08:51:56Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · A week in security (March 9 – March 15) · Baitaphish