Nearly 15,000 infected websites cleaned in SocGholish crackdown
2026-06-19T20:51:54Z•f5be2a82765137fbd57a6661a622053f9b1dafd0671872b75528eb646ac03648
24 billion recordsAndroid banking trojanBeats Studio BudsBluetooth vulnerabilityEtherRATKodak breachMicrosoft DefenderRoguePlanetRokarollaShinyHuntersSocGholishbanking trojandata breachdata leakdevice takeovereavesdroppingextortionfake browser updatefull system compromiseiRhythmmalicious GitHub projects','fake verification pages','account‑tōmobile malwarephishing infrastructureprivilege escalationwebsite compromise
What happened
Malwarebytes Labs (mid‑June 2026) roundup: global takedown/cleanup removed nearly 15,000 sites used by the SocGholish fake‑browser‑update campaign; Apple patched a Bluetooth vulnerability in Beats Studio Buds that could allow nearby attackers to eavesdrop; Microsoft is developing a patch for “RoguePlanet,” an unpatched Defender flaw that can grant attackers full system control; researchers uncovered Rokarolla, an Android banking trojan capable of device takeover and targeting 200+ banking/crypto apps; a massive 24‑billion‑record data dump was discovered; multiple breaches and extortion events—
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- malwarebytes_labs
- Record identifier
- f5be2a82765137fbd57a6661a622053f9b1dafd0671872b75528eb646ac03648
- Enrichment time
- 2026-06-19T20:51:54Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.