malwarebytes

Victims risk AsyncRAT infection after being redirected to fake Booking.com sites

A new phishing campaign is redirecting users from gaming sites, social media, and sponsored ads to fake Booking.com websites. These malicious sites use deceptive CAPTCHA prompts to hijack the user's clipboard and install the AsyncRAT malware.

Tax deadline threat: QuickBooks phishing scam exploits Google Ads

Cybercriminals are exploiting trusted platforms like Google to target Intuit QuickBooks users. They are creating highly convincing fake login pages designed to pilfer sensitive information, including usernames, passwords, and even OTPs.

AMOS and Lumma Stealers Actively Spread to Reddit Users

Scammers leverage Reddit communities associated with cryptocurrency traders to post about free access to TradingView through cracked versions. These downloads end up infecting users with info-stealer malware.

FBI Issues Warning Over Free Online File Converters That Actually Install Malware

Instead of converting files, the tools actually load malware onto victims’ computers. The FBI warned specifically that the malware infection can also lead to ransomware attacks.

PayPal Scam Abuses Docusign API to Spread Phishy Emails

The Docusign Application Programming Interface (API) allows scammers to send emails that come from genuine Docusign accounts, and they can use templates to impersonate reputable companies.

Phishing Evolves Beyond Email to Become Latest Android App Threat

In 2024, Malwarebytes detected more than 22,800 phishing apps on Android, according to the recent 2025 State of Malware report. Of those malicious apps, 5,200 could subvert multi-factor authentication (MFA).

University Site Cloned to Evade Ad Detection and Distribute Fake Cisco AnyConnect Installer

The attackers are using a clever technique to evade detection by security systems. They have cloned the website of a German university that uses Cisco AnyConnect and are using it as a “white page” to fool ad detection systems.

Microsoft Advertisers Phished via Malicious Google Search Ads

Scammers use malicious ads on Google Search to steal login credentials from users trying to access Microsoft’s advertising platform. The phishing page shows a fake error message prompting users to reset their password and attempts to bypass 2FA.

High-Traffic Sites Attacked in “zqxq” Campaign Through Obfuscated Javascript Injection

The malware used in the campaign hides in legitimate files using scrambled variables and custom functions like HttpClient, rand, and token. These methods evade detection and hinder analysis by researchers.

Fake Game Sites Lead to Information Stealers

The new malware campaign targets users by sending direct messages on platforms like Discord, asking if they want to beta test a new video game. These messages often appear to come from the game’s developer.

Defend Against Threats with Cyber Fusion

Cyware is the leading provider of cyber fusion solutions that power threat intelligence sharing , end-to-end automation and 360-degree threat response.

Trending Tags