Recent Advisories

Severity ID Title Vendor Product Date Type
CRITICAL 9.8 MALWAREBYTES:63...

Another Chrome zero-day under attack: update now_MALWAREBYTES:633E8C67D1D9E0576778E41AE5B8DE38

Google issued an extra patch for a security vulnerability in Chrome that is being actively exploited, and it's urging users to update. The patch fi...

N/A N/A MALWAREBYTES
NONE MALWAREBYTES:00...

Malwarebytes for Mac now has smarter, deeper scans_MALWAREBYTES:00DA97D3ACC8B3B4EF012BD1FD2341DC

Say hello to the upgraded **Malwarebytes for Mac** —now with more robust protection, more control, and the same trusted defense you count on every ...

N/A N/A MALWAREBYTES
HIGH 8.4 MALWAREBYTES:86...

December Patch Tuesday fixes three zero-days, including one that hijacks Windows devices_MALWAREBYTES:869BC866CBA0AA613D663E98C13DD580

These updates from Microsoft fix serious security issues, including three that attackers are already exploiting to take control of Windows systems....

N/A N/A MALWAREBYTES
NONE MALWAREBYTES:FC...

GhostFrame phishing kit fuels widespread attacks against millions_MALWAREBYTES:FC455EBA59441EA2A7BC3C7ECB3CB450

GhostFrame is a new phishing-as-a-service (PhaaS) kit, tracked since September 2025, that has already powered more than a million phishing attacks....

N/A N/A MALWAREBYTES
NONE MALWAREBYTES:DB...

EU fines X $140m, tied to verification rules that make impostor scams easier_MALWAREBYTES:DBE41253011895E001041BE9294C53D3

The European Commission slapped social networking company X with a €120 million ($140 million) fine last week for what it says was a lack of transp...

N/A N/A MALWAREBYTES
NONE MALWAREBYTES:C4...

Prompt injection is a problem that may never be fixed, warns NCSC_MALWAREBYTES:C425997B44DE9F53CD24435855E4395E

Prompt injection is shaping up to be one of the most stubborn problems in AI security, and the UK’s National Cyber Security Centre (NCSC) has warne...

N/A N/A MALWAREBYTES
NONE MALWAREBYTES:66...

Deepfakes, AI resumes, and the growing threat of fake applicants_MALWAREBYTES:66B2F49ECFEF1395A752E44958910039

Recruiters expect the odd exaggerated resume, but many companies, including us here at Malwarebytes, are now dealing with something far more seriou...

N/A N/A MALWAREBYTES
NONE MALWAREBYTES:87...

How phishers hide banking scams behind free Cloudflare Pages_MALWAREBYTES:87003BCA3C207764B7B4208ABAEF9543

During a recent investigation, we uncovered a phishing operation that combines free hosting on developer platforms with compromised legitimate webs...

N/A N/A MALWAREBYTES
NONE MALWAREBYTES:BA...

Scammers harvesting Facebook photos to stage fake kidnappings, warns FBI_MALWAREBYTES:BA3D9151F725DFA8AAC9D603DC07DB34

The FBI has warned about a new type of scam where your Facebook pictures are harvested to act as “proof-of-life” pictures in a virtual kidnapping. ...

N/A N/A MALWAREBYTES
NONE MALWAREBYTES:1D...

A week in security (December 1 – December 7)_MALWAREBYTES:1D181C6A345DF2049155D0093E16E66B

Last week on Malwarebytes Labs: * Leaks show Intellexa burning zero-days to keep Predator spyware running * How scammers use fake insurance te...

N/A N/A MALWAREBYTES