A week in security (August 24 – August 30)

2026-08-31T08:51:48Zef4645ac020b325c75d1d691d4cfa8703c8d138e977ef6c1f73d31d8db1a20e6
AI-securityAmatera-StealerAndroid-malwareChromeClickFixPavinLoaderToxicPandabanking-trojanbrowser-exploitationcredential-theftfake-download-campaignsinfostealermalwarephishingprivacyprompt-injectionscamsspywaretech-support-scamthreat-intelligence

What happened

Malwarebytes Labs’ August 24–30, 2026 roundup covers active scams, phishing, infostealers, Android banking malware, loader campaigns, browser exploitation, AI prompt-injection risks, privacy issues, and account-security guidance. Notable threats include ToxicPanda 2.0 targeting Android banking apps, PavinLoader delivering Amatera Stealer, fake GTA 6 sites distributing browser-password stealers, fake Indeed interview apps delivering Android spyware, and tech-support scams using fake Apple Pay or Microsoft security alerts. The roundup also reports Chrome security fixes and an AI-agent attack onH

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
malwarebytes_labs
Record identifier
ef4645ac020b325c75d1d691d4cfa8703c8d138e977ef6c1f73d31d8db1a20e6
Enrichment time
2026-08-31T08:51:48Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.