Activate subscription >
Add devices or upgrade >
Renew subscription >
Secure Hub >
Don’t have an account? Sign up >
< Products
< Resources
< Help
Recently, we uncovered a realistic, multi-layered data theft phishing campaign targeting AT&T customers.
An attempt to drop two RATs on a system used an uncanny assortment of legitimate Windows tools.
Attackers use legitimate open-source software as cover, relying on user trust to compromise systems. We dive into an example.
We unpack a trojanized WinRAR download that was hiding the Winzipper malware behind a real installer.
A “purchase order” PDF blocked by Malwarebytes led to a credential-harvesting phishing site. So we analyzed the attack and where the data went next.
Malwarebytes threat research reveals spike in adware and malicious malware families Triada and MobiDash heading into the holiday season.
We’ve seen a new wave of attacks exploiting legitimate Remote Monitoring and Management (RMM) tools to remotely control victims’ systems.
In 2025, receiving a .vbs “invoice” is like finding a floppy disk in your mailbox. It's retro, suspicious, and definitely not something you should run.
Even a sloppy, low-skill phish can wreck your day. We go under the hood of this basic credential-harvesting campaign.