Category archive
Scam alerts
Track the latest scam alerts, fake support incidents, delivery fraud, payment scams and rapid verification guidance in one archive.
This landing page groups scam alerts into one indexable archive so users and Google can navigate the incident stream by topic instead of only by date, with stronger internal links into the right tools and recovery paths.
Filter the alert archive
Narrow the archive by category and risk level to review phishing alerts, data breach alerts, malware coverage, vulnerability updates and ransomware incidents faster.
Full alert archive
Showing 12 of 241 matching alerts.
Each alert card surfaces the threat type, documented summary and best next step so the listing itself can answer intent around latest cybersecurity alerts, phishing alerts, breach alerts and incident response without forcing every visitor to click through immediately.
Older alerts from 2021-2025 are still available, but stronger, documented and more recent reporting is ranked first so the archive stays aligned with current Google quality expectations.
APT41 Uses Typosquatting and SMTP Malware to Steal AWS, GCP, Azure, and Alibaba Cloud Credentials
Human review: Artur Ślesik | Source date: Apr 14, 2026 | Sources: 1The Chinese APT41 group has conducted a multi-year campaign targeting AWS, GCP, Azure, and Alibaba Cloud by exploiting typosquatted domains and SMTP-based malware to s... Documented alert summary. Focus: infection path, likely payload impact and containment priorities.
Best next step: Identity Theft Recovery Planner
APT41 Deploys New ELF Winnti Backdoor Targeting Linux Cloud Servers on AWS, GCP, Azure, and Alibaba
Human review: Marcin Pocztowski | Source date: Apr 14, 2026 | Sources: 1APT41 has developed a new ELF-format Winnti backdoor targeting Linux cloud servers across AWS, GCP, Azure, and Alibaba Cloud. Using SMTP-based command-and-control, it... Documented alert summary. Focus: infection path, likely payload impact and containment priorities.
Best next step: Identity Theft Recovery Planner
Critical Vulnerabilities in Cisco Webex, Cisco ISE, and Drupal Core Demand Immediate Action
Human review: Marcin Pocztowski | Source date: Apr 16, 2026 | Sources: 2Multiple critical security vulnerabilities have been disclosed affecting Cisco Webex Services, Cisco Identity Services Engine (ISE), and Drupal Core. These flaws could... Verified across 2 sources. Focus: affected products, exploit urgency and remediation guidance.
Best next step: Identity Theft Recovery Planner
Three Trees Data Leak Exposes Personal Information of Over 40,000 Customers and Delivery Drivers
Human review: Artur Ślesik | Source date: Apr 23, 2026 | Sources: 4A misconfigured MongoDB database belonging to California-based marijuana delivery service Three Trees exposed sensitive data of at least 40,000 individuals, including... Verified across 4 sources. Focus: lure pattern, spoofing signals and account-protection next steps.
Best next step: Identity Theft Recovery Planner
Critical and High-Severity Vulnerabilities in Eclipse OpenMQ and ownDMS Highlight Urgent Security Risks
Human review: Marcin Pocztowski | Source date: Apr 15, 2026 | Sources: 2A recent bulletin from INCIBE details multiple vulnerabilities across widely used software products, including a critical arbitrary file read and potential remote code... Verified across 2 sources. Focus: affected products, exploit urgency and remediation guidance.
Best next step: Identity Theft Recovery Planner
APT29 Cyberattack on TeamViewer Highlights Rising Third-Party Vendor Security Risks
Human review: Artur Ślesik | Source date: Apr 10, 2026 | Sources: 1In June 2024, APT29 targeted TeamViewer, exposing critical vulnerabilities in third-party vendor security. This incident underscores the growing risks organizations fa... Documented alert summary. Focus: lure pattern, spoofing signals and account-protection next steps.
Best next step: Identity Theft Recovery Planner
Fake Microsoft Support Website Distributes Password-Stealing Malware
Human review: Marcin Pocztowski | Source date: Apr 09, 2026 | Sources: 1A fraudulent website impersonating Microsoft support has been found distributing malware that steals passwords and financial data. This article details the confirmed f... Documented alert summary. Focus: lure pattern, spoofing signals and account-protection next steps.
Best next step: Phishing Recovery Center and Account Takeover Guides
Critical Cybersecurity Incidents in April 2026: From Qualcomm Chipset Flaws to Water Facility Malware
Human review: Marcin Pocztowski | Source date: Apr 23, 2026 | Sources: 3April 2026 saw a surge in high-risk cyber threats including a severe Qualcomm Snapdragon hardware vulnerability, a Linux privilege escalation flaw dubbed Pack2TheRoot,... Verified across 3 sources. Focus: lure pattern, spoofing signals and account-protection next steps.
Best next step: Crypto Scam Checker for Fake Investments and Recovery Fraud
Yokogawa CENTUM VP Hard-Coded Password Vulnerability Poses High Risk to Industrial Control Systems
Human review: Marcin Pocztowski | Source date: Apr 02, 2026 | Sources: 1A hard-coded password in Yokogawa CENTUM VP versions R5.01.00 to R7.01.00 allows attackers with HIS access to escalate privileges, risking unauthorized control of crit... Documented alert summary. Focus: affected products, exploit urgency and remediation guidance.
Best next step: Identity Theft Recovery Planner
Critical Vulnerabilities in SpiceJet Online Booking System Expose Passenger Data Globally
Human review: Marcin Pocztowski | Source date: Apr 23, 2026 | Sources: 1Two high-severity security flaws (CVE-2026-6375 and CVE-2026-6376) in SpiceJet's online booking system allow unauthorized access to passenger personal and booking info... Documented alert summary. Focus: affected products, exploit urgency and remediation guidance.
Best next step: Identity Theft Recovery Planner
Critical Stack-Based Buffer Overflow Vulnerability Discovered in Delta Electronics ASDA-Soft (CVE-2026-5726)
Human review: Marcin Pocztowski | Source date: Apr 16, 2026 | Sources: 1A high-severity stack-based buffer overflow vulnerability (CVE-2026-5726) affecting Delta Electronics ASDA-Soft versions up to 7.2.2.0 has been publicly disclosed. Suc... Documented alert summary. Focus: affected products, exploit urgency and remediation guidance.
Best next step: Identity Theft Recovery Planner
Critical Vulnerabilities in immich, SimplePress CMS, and Kepler Wallpaper Script Expose Systems to Elevated Privileges and SQL Injection Attacks
Human review: Artur Ślesik | Source date: Apr 16, 2026 | Sources: 1Multiple high-severity vulnerabilities have been identified in popular software products including immich, SimplePress CMS, and Kepler Wallpaper Script, potentially al... Documented alert summary. Focus: affected products, exploit urgency and remediation guidance.
Best next step: Identity Theft Recovery Planner
Alerts archive SEO topics
Archive maintenance and remediation tracking. HackWatch does not treat alerts as one-time posts. We continue checking whether vendors have issued patches, workarounds or final remediation updates, then refresh the article with the latest incident status so readers can see whether a threat is still active, mitigated or already resolved.