Android Banking Malware, Zoom Security Flaws, Grubhub Refunds
August 16, 2026

Android Banking Malware, Zoom Security Flaws, Grubhub Refunds
Three security stories this week: a new Android malware targeting your bank card, critical vulnerabilities in Zoom, and the FTC delivering refunds to Grubhub users who were overcharged.
New Android malware drains bank accounts in real time
A fresh Android malware is combining several attack methods to steal and use your bank card information while you're not looking. It works by first tricking you into installing a fake app or clicking a malicious link. Once installed, it gives criminals remote access to your phone, then uses NFC technology (the short-range wireless used for contactless payments) to relay your card details to a payment terminal they control. This means they can drain your account in real time, potentially emptying it before you notice.
What to do: Only install apps from the official Google Play Store. If you've sideloaded apps from other sources, remove them. Check your bank account regularly for unauthorized charges, and consider turning off NFC on your phone unless you actively use contactless payments. If you see suspicious charges, contact your bank immediately.
Zoom vulnerabilities let meeting participants attack each other
Second, researchers have found critical flaws in Zoom that allow someone in the same meeting to run malicious code on your device. This is serious because it means a stranger in a video call could potentially gain control of your computer or phone without your knowledge. Zoom uses these calls constantly for work, school, and personal video chats, making this a real risk for many people.
What to do: Update Zoom to the latest version immediately. Check your Zoom app settings: go to your profile, select "Settings," then "About," and look for an "Update" button. If you're not sure your version is current, uninstall Zoom and reinstall it from scratch. This is one update you don't want to put off.
FTC returns $23.8 million to Grubhub users
Third, the Federal Trade Commission is distributing more than $23.8 million in refunds to Grubhub drivers and customers harmed by the company's deceptive practices. Grubhub made false claims about how much drivers could earn, blocked driver accounts without explanation, and charged users unfair fees. If you've used Grubhub as a driver or customer since 2019, you may be eligible for a refund.
What to do: The FTC will contact eligible people directly by email or mail with instructions on how to claim your share. If you believe you were harmed and haven't heard from the FTC yet, visit ftc.gov and search for "Grubhub" to check your eligibility and file a claim. You don't need to pay anyone or download anything to apply.
Stay on top of app updates and keep an eye on your bank account. These are the two best habits for staying secure.
Sources
New Android malware lets criminals use your bank card in real time Malwarebytes Labs
Zoomsday flaws could let one Zoom participant attack another Malwarebytes Labs
FTC Sends More than $23.8 Million to Drivers and Diners Harmed by Grubhub's Deceptive Advertising Claims and Other Unlawful Conduct FTC Consumer Protection
Enjoyed this? Get the next issue free.