Nearly 15,000 infected websites cleaned in SocGholish crackdown

2026-06-19T20:51:54Zf5be2a82765137fbd57a6661a622053f9b1dafd0671872b75528eb646ac03648
24 billion recordsAndroid banking trojanBeats Studio BudsBluetooth vulnerabilityEtherRATKodak breachMicrosoft DefenderRoguePlanetRokarollaShinyHuntersSocGholishbanking trojandata breachdata leakdevice takeovereavesdroppingextortionfake browser updatefull system compromiseiRhythmmalicious GitHub projects','fake verification pages','account‑tōmobile malwarephishing infrastructureprivilege escalationwebsite compromise

What happened

Malwarebytes Labs (mid‑June 2026) roundup: global takedown/cleanup removed nearly 15,000 sites used by the SocGholish fake‑browser‑update campaign; Apple patched a Bluetooth vulnerability in Beats Studio Buds that could allow nearby attackers to eavesdrop; Microsoft is developing a patch for “RoguePlanet,” an unpatched Defender flaw that can grant attackers full system control; researchers uncovered Rokarolla, an Android banking trojan capable of device takeover and targeting 200+ banking/crypto apps; a massive 24‑billion‑record data dump was discovered; multiple breaches and extortion events—

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
malwarebytes_labs
Record identifier
f5be2a82765137fbd57a6661a622053f9b1dafd0671872b75528eb646ac03648
Enrichment time
2026-06-19T20:51:54Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.