Hacked sites deliver Vidar infostealer to Windows users
2026-03-16T20:51:59Z•eacd816bb02cb28eaf2a2e18918f1f7f9f97501fb100dbd035f14dbcfed64c70
AV evasionAndroid lockscreen bypassChrome zero-dayClickFixCorunaFBI wiretap breach suspicion`,`browser-notifications-abuse`,`malIPv6 obfuscationMFA leakageMicrosoft AuthenticatorTemu scamVidarWordPress compromiseZombie ZIPcalendar scamexploit kitiOS patchinfostealerpassword reusephishingremote-access backdoorrobocallssextortionsocial engineeringsupply-chain breachzero-day
What happened
This feed highlights multiple active threats and security updates from March 2026: hacked WordPress sites are serving fake “verify you are human” pages to deliver the Vidar infostealer; a Zombie ZIP technique can evade an AV’s first scan; Chrome zero-days are being actively exploited and patched; and a ClickFix-style Temu airdrop scam installs a stealthy remote-access backdoor. Additional items include Apple/iOS Coruna exploit-kit fixes, an Android lock‑screen weakness, Microsoft Authenticator token leakage, calendar- and robocall-based scams impersonating vendors, phishing tricks (IPv6 obfusc
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- malwarebytes_labs
- Record identifier
- eacd816bb02cb28eaf2a2e18918f1f7f9f97501fb100dbd035f14dbcfed64c70
- Enrichment time
- 2026-03-16T20:51:59Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.