Malwarebytes Labs – The Security Blog From Malwarebytes | Malwarebytes Labs Scams Search results are sending people to fake Bitrefill checkouts September 15, 2026 – Fake Bitrefill checkout pages are appearing in search results and tricking people into sending cryptocurrency directly to scammers. News HBO Max’s verified Reddit account hijacked to spread malware AI Meta AI builds detailed profiles of children from years of family posts Data breaches Revolut gave customer IDs and financial data to a government impostor News Google’s new search redirects make links harder to check before you click Podcast Listen to the latest in cybersecurity and privacy. VIEW EPISODES AI Find out the newest developments in AI. READ MORE Data breaches Keep on top of the latest data breach news. READ MORE Threat Intel Stay up to date with our latest research. READ MORE HBO Max’s verified Reddit account hijacked to spread malware Pieter Arntz September 15, 2026 0 Comments Cybercriminals used HBO Max’s verified Reddit account to run 108 malicious ads that tricked people into installing information stealers. Meta AI builds detailed profiles of children from years of family posts Danny Bradbury September 15, 2026 0 Comments A mother says Meta AI pieced together names, birth details, photos, and location information about her young daughters from years of family posts. Search results are sending people to fake Bitrefill checkouts Stefan Dasic September 15, 2026 0 Comments Fake Bitrefill checkout pages are appearing in search results and tricking people into sending cryptocurrency directly to scammers. Google’s new search redirects make links harder to check before you click Pieter Arntz September 14, 2026 0 Comments Google says its new opaque redirects tackle evolving abuse, but they also prevent users from checking a result’s destination by hovering over it. Revolut gave customer IDs and financial data to a government impostor Pieter Arntz September 14, 2026 0 Comments The digital bank was tricked into releasing sensitive customer information, including IDs, to an attacker using a legitimate government email domain. A week in security (September 7 – September 13) Malwarebytes Labs September 14, 2026 0 Comments A list of topics we covered in the week of September 7 to September 13 of 2026 Crypto customers targeted by scammers after email marketing provider breach Pieter Arntz September 11, 2026 0 Comments A breach at email marketing company Brevo exposed Trezor, CoinTracking, and BitBox customers to phishing emails, but others may also be at risk. Android malware creates a hidden copy of your banking app Pieter Arntz September 11, 2026 0 Comments The Gigabud banking Trojan can clone a banking app into a separate work profile on an Android device to help hide fraudulent transactions. BlueMoon exploit kit turns Chrome and Windows flaws into attacks Pieter Arntz September 10, 2026 0 Comments Four different espionage groups used the same exploit kit to target recently fixed flaws, showing why “patch later” is a dangerous gamble. 1 2 3 … 651 Next Contributors Threat Center Podcast Glossary Scams