Hacked sites deliver Vidar infostealer to Windows users

2026-03-16T20:51:59Zeacd816bb02cb28eaf2a2e18918f1f7f9f97501fb100dbd035f14dbcfed64c70
AV evasionAndroid lockscreen bypassChrome zero-dayClickFixCorunaFBI wiretap breach suspicion`,`browser-notifications-abuse`,`malIPv6 obfuscationMFA leakageMicrosoft AuthenticatorTemu scamVidarWordPress compromiseZombie ZIPcalendar scamexploit kitiOS patchinfostealerpassword reusephishingremote-access backdoorrobocallssextortionsocial engineeringsupply-chain breachzero-day

What happened

This feed highlights multiple active threats and security updates from March 2026: hacked WordPress sites are serving fake “verify you are human” pages to deliver the Vidar infostealer; a Zombie ZIP technique can evade an AV’s first scan; Chrome zero-days are being actively exploited and patched; and a ClickFix-style Temu airdrop scam installs a stealthy remote-access backdoor. Additional items include Apple/iOS Coruna exploit-kit fixes, an Android lock‑screen weakness, Microsoft Authenticator token leakage, calendar- and robocall-based scams impersonating vendors, phishing tricks (IPv6 obfusc

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
malwarebytes_labs
Record identifier
eacd816bb02cb28eaf2a2e18918f1f7f9f97501fb100dbd035f14dbcfed64c70
Enrichment time
2026-03-16T20:51:59Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · Hacked sites deliver Vidar infostealer to Windows users · Baitaphish