A week in security (March 9 – March 15)
2026-03-16T08:51:56Z•c7f7695ed69ad3277e8ed90d2d209ed7fdab97556068999a69948d90166f763e
account takeoverandroid lockscreen exploitapple coruna exploit kitbrowser-notification abusecalendar phishingchrome zero-dayclickfixfake-update malwarefbi wiretapinfostealermicrosoft authenticatormicrosoft patch tuesdayphishing (IPv6 trick)remote-access backdoorsextortionsocial engineeringsupply-chain breachtemu airdrop
What happened
Malwarebytes Labs weekly roundup (Mar 9–15, 2026) covering multiple active threats and patching activity: Google released an out-of-band Chrome update for two zero-days under active exploitation; Microsoft’s March Patch Tuesday addressed 79 flaws including two zero-days; Apple issued fixes for older iOS/iPadOS against the Coruna exploit kit; researchers disclosed an Android lock-screen attack that can recover PINs and keys; Microsoft Authenticator had a code-leak bug on mobile. The bulletin also details several social-engineering and supply-chain incidents—fake Malwarebytes calendar renewal l¶
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- malwarebytes_labs
- Record identifier
- c7f7695ed69ad3277e8ed90d2d209ed7fdab97556068999a69948d90166f763e
- Enrichment time
- 2026-03-16T08:51:56Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.