Skip to content
Golden and blue Ancient Egyptian art with pharaoh, Eye of Horus, scarab, and "KEMETIC MIND" text.
Menu
  • Home
  • Breaking News
  • Live Trackers
    • Karmelo Anthony Case
    • Kohen Wiley Case
    • Nolan Wells Case
    • Global Conflict Tracker
    • Cyclospora Outbreak Map
    • Food Recall Tracker
    • Missing People in the United States
    • Bomb Threat Tracker
  • Tools
    • Numerology Calculator
    • Live Settlement Tracker
    • U.S. Voting Dates
    • Project 2025 Tracker
    • Frequently Asked Questions
  • Civil Rights
  • Kemetic Wisdom
  • Numerology
  • World News
  • About Kemetic Minds
    • Contact
  • Legal
    • Privacy Policy
    • Cookie Policy
    • Terms of Service
    • Disclaimer
Menu
Newsroom
Oil Tops $100 as Houthis Seize Yemen’s Mocha PortTrump: Iran War Won’t End Until After November MidtermsEvening News Recap — September 10, 2026South Africa Posts Widest Current Account Gap Since 2015Iran-Backed Houthis Seize Yemen’s Mokha as Oil Tops $1005th Circuit: Clean Water Is Not a Constitutional Right in JacksonIran Damages US Fighter Jets in Jordan as Hormuz War WidensSupreme Court Stays Missouri Order, Blocking 7-1 GOP GerrymanderOil Tops $100 as Houthis Seize Yemen’s Mocha PortTrump: Iran War Won’t End Until After November MidtermsEvening News Recap — September 10, 2026South Africa Posts Widest Current Account Gap Since 2015Iran-Backed Houthis Seize Yemen’s Mokha as Oil Tops $1005th Circuit: Clean Water Is Not a Constitutional Right in JacksonIran Damages US Fighter Jets in Jordan as Hormuz War WidensSupreme Court Stays Missouri Order, Blocking 7-1 GOP Gerrymander
Cybersecurity & Scam Daily Briefing

Consumer Rights · Aug 13, 20264 New Scam Alerts: WhatsApp, Surfshark, Amazon, Akira

Posted on August 13, 2026August 13, 2026 by Kemetic Mind

KEMETIC MINDS
Cybersecurity & Scam Daily Briefing — August 13, 2026


Photo: Gustavo Fring via Pexels (source)

📢 SPREAD THE WORD — Share this report

Facebook Post on X WhatsApp LinkedIn Reddit
  • WhatsApp unveils new scam alert feature (CyberSecurityNews, 2026)
  • Surfshark launches Scam Text Protection (Bing News, 2026)
  • Fake Amazon refund text steals phone users’ data (FTC, 2026)
  • Akira ransomware affiliate uses Safe Mode to disable endpoint security (Huntress, 2026)
  • SM-Detector model detects smishing messages with 99.63% accuracy (Ghourabi, 2021, Concurrency and Computation: Practice and Experience)
  • AI-based cybersecurity awareness training reduces risk scores (Ansari, 2022, International Journal of Smart Sensor and Adhoc Network)

1. The WhatsApp “Wrong Code” Account-Takeover Scam

Meta began a limited beta of a new WhatsApp feature called Scam Alert on August 12, 2026 — an optional, on-device machine-learning check that flags likely scam messages from people outside your contacts, without sending any message content off your phone (Meta Engineering, 2026).

The feature is aimed squarely at the kind of social-engineering scam WhatsApp users have actually been hit with this month: attackers trigger WhatsApp’s real account-verification code to be sent to a victim’s phone, then pose as a friend or “WhatsApp support” and ask the victim to read the code back to them — handing over full control of the account (Forbes, 2026).

SCAM WATCH: The WhatsApp “Wrong Code” Takeover
kemeticmind.com — Cybersecurity Scam Watch
Text Message • “Jordan” (saved contact's number, spoofed/compromised)
Hey it's Jordan! WhatsApp accidentally sent my verification code to your number instead of mine — can you read it to me? I really need to get back into my account.
RED FLAG: Claims YOUR phone got someone else's code by mistake
RED FLAG: Asks you to read out a verification code
Oh no, that's weird — sure, one sec… it's 482-193.
(That code was never Jordan's. It's the real WhatsApp verification code for YOUR number — the attacker just used it to register your account on their own phone.)
RED FLAG: The code was actually YOUR account's real code
RED FLAG: You just handed over full control of your account
HOW TO RESPOND
WhatsApp only sends a 6-digit code when someone tries to register your phone number on a new device. Never read that code to anyone, even someone who claims to be a friend or “WhatsApp support” — it's the master key to your account. Turn on Two-Step Verification (Settings > Account > Two-Step Verification) so a code alone isn't enough.

Watch how a real the whatsapp “wrong code” takeover unfolds — and the red flags that give it away.

How to Avoid This Scam

  • Never read a WhatsApp verification code to anyone, even someone who sounds like a friend in a panic — that code is the only thing standing between an attacker and your account.
  • Turn on Two-Step Verification under Settings > Account so a stolen code alone isn’t enough to take over your account.
  • If you’re eligible, opt in to the new Scam Alert beta feature, which flags likely-scam messages from non-contacts directly in the chat.
  • If a “friend” asks for a code, verify by calling them on a number you already have saved — never the number that just messaged you.

phishing email laptop warning
Photo: Markus Winkler via Pexels (source)

2. The Fake Delivery-Fee Text Surfshark’s New Feature Targets

Surfshark launched a real-time Scam Text Protection feature this month that scans incoming text messages for known scam sender numbers, scam-pattern language, and malicious links before you ever tap them — available to Surfshark One and One+ subscribers on iOS and Android (Surfshark, 2026; TechRadar, 2026).

The feature is built for exactly the kind of “smishing” (SMS phishing) text that’s been flooding phones this year: a fake delivery notice asking for a small “customs fee” or “redelivery fee,” with a link to a lookalike site built to steal payment details.

SCAM WATCH: The Fake Delivery-Fee Text
kemeticmind.com — Cybersecurity Scam Watch
Text Message • “USPS” (spoofed number)
USPS: Your package is on hold — a $2.35 customs fee is due. Pay now to release delivery: usps-redeliver.info/pay
RED FLAG: Small, easy-to-ignore-sounding fee
RED FLAG: Lookalike link, not usps.com
RED FLAG: Manufactured urgency
I wasn't expecting a package, but it's only $2.35… I'll just pay it.
The link opens a fake USPS page asking for your name, address, and full card number “to verify your identity” before releasing the package.
RED FLAG: Real carriers never ask for a card number by text
RED FLAG: Site harvests your card details, not a real payment
HOW TO RESPOND
Real delivery services never text you a link to pay a release fee. Go to the carrier's real app or website directly instead of tapping a link in an unexpected text — that's exactly the pattern tools like Surfshark's Scam Text Protection scan for: known scam numbers, suspicious link destinations, and scam-pattern language in the message itself.

Watch how a real the fake delivery-fee text unfolds — and the red flags that give it away.

How to Avoid This Scam

  • Never tap a payment link in an unexpected delivery text — go to the carrier’s real app or website directly instead.
  • Real carriers (USPS, UPS, FedEx) do not text you a link to pay a small release fee for a package.
  • Turn on a scam-text filtering feature if your carrier or security app offers one; on iPhone, suspected scam texts can be automatically routed to a separate spam folder.
  • If you weren’t expecting a package, that’s the first red flag — verify directly with the retailer or carrier before doing anything else.

3. The Fake Amazon “No Return Needed” Refund Text

The FTC is warning shoppers about a text message impersonating Amazon that claims a “routine quality inspection” found a problem with a recent order, and offers a full refund — no return required (FTC, 2026).

The catch: the link in the text doesn’t go to Amazon at all. It leads to a fake site built to steal your Amazon login credentials and payment information, according to the FTC.

SCAM WATCH: The Fake Amazon “Refund” Text
kemeticmind.com — Cybersecurity Scam Watch
Text Message • “Amazon” (spoofed number)
Amazon: A routine quality inspection found your recent order doesn't meet our standards. You qualify for a full refund — no return needed. Claim here: amazon-refunds-claim.net
RED FLAG: “No return needed” refund is not how Amazon refunds work
RED FLAG: Link is not amazon.com
A refund without even sending it back? I'll click to claim it.
The link goes to a fake site — not Amazon — built to steal your login and payment information, according to the FTC.
RED FLAG: Fake site steals your Amazon login and card details
HOW TO RESPOND
Don't open or respond to unexpected “refund” texts. Check your actual order status by going directly to the Amazon app or amazon.com — never through a link in a text. Report the text as spam by forwarding it to 7726, or use your phone's “report junk” option (FTC, 2026).

Watch how a real the fake amazon “refund” text unfolds — and the red flags that give it away.

How to Avoid This Scam

  • A refund that doesn’t require you to return the item is not how Amazon refunds actually work — treat that offer itself as the red flag.
  • Check your real order status only inside the official Amazon app or by typing amazon.com directly into your browser — never through a link in a text.
  • Report the text as spam by forwarding it to 7726, or use your phone’s built-in “report junk” option (FTC, 2026).
  • If you already clicked and entered information, change your Amazon password immediately and check your account’s order history and saved payment methods for anything unfamiliar.

family online safety internet security
Photo: Ann H via Pexels (source)

4. How the Akira Ransomware Safe Mode Attack Actually Broke In

Huntress researchers documented the first known Akira ransomware attack to abuse Windows Safe Mode to disable endpoint security — and it started with something far more ordinary than malware: a SonicWall SSL VPN account with no multi-factor authentication (Huntress, 2026).

The attacker credential-sprayed that account and got in after seven minutes of failed login attempts, then rebooted the target server into Safe Mode with Networking — which loads only core Windows drivers, disabling Microsoft Defender and third-party endpoint tools by design (Huntress, 2026).

The ransomware itself actually failed to encrypt the victim’s files, running into memory errors in Safe Mode’s stripped-down environment. But the attacker had already stolen credentials and file contents beforehand, so the extortion threat landed regardless of whether encryption worked (Huntress, 2026).

SCAM WATCH: How the Akira Safe Mode Attack Actually Broke In
kemeticmind.com — Cybersecurity Scam Watch
Text Message • Unauthorized SonicWall VPN login (credential-sprayed)
The attacker credential-sprays a SonicWall SSL VPN account with no multi-factor authentication — and gets in after 7 minutes of failed login attempts.
RED FLAG: No MFA on the VPN account
RED FLAG: Burst of failed logins right before success
They reboot the server into Windows Safe Mode with Networking — which loads only core Windows drivers, disabling Microsoft Defender and every third-party endpoint security tool by design.
RED FLAG: Safe Mode disables most endpoint security tools automatically
The ransomware tries to encrypt the files — but Safe Mode's stripped-down memory isn't enough, and encryption fails. The attacker had already stolen credentials and files first, so the extortion threat lands anyway (Huntress, 2026).
RED FLAG: Encryption failed, but data theft already happened
HOW TO RESPOND
Require MFA on every VPN account, not just admin accounts. Monitor for bursts of failed logins that suddenly resolve into a success, and alert on unexpected Safe Mode reboots (msconfig.exe or bcdedit activity, new Safe Boot registry keys) — attackers use Safe Mode specifically because most endpoint security tools can't run there (Huntress, 2026).

Watch how a real how the akira safe mode attack actually broke in unfolds — and the red flags that give it away.

How to Avoid This Scam

  • Require multi-factor authentication on every VPN account, not just administrator accounts — this attack succeeded specifically because MFA was missing.
  • Monitor for bursts of failed VPN logins that suddenly resolve into a successful one — that pattern is a credential-spray attack in progress.
  • Alert on unexpected Safe Mode reboots: watch for msconfig.exe or bcdedit activity, Kernel-Boot event 27 with SAFEBOOT options, and new Safe Boot registry keys (Huntress, 2026).
  • Assume data was stolen even if encryption fails or is blocked — attackers increasingly exfiltrate first and encrypt second (or not at all), so a failed encryption attempt is not the same as a defeated attack.

What the Research Actually Says

A study by Ghourabi (2021, Concurrency and Computation: Practice and Experience) found that the SM-Detector model can detect smishing messages with 99.63% accuracy.

Research by Ansari (2022, International Journal of Smart Sensor and Adhoc Network) showed that AI-based cybersecurity awareness training can reduce risk scores.


Today’s Family Safety Checklist

  • Never share a verification code, one-time password, or your card number in response to a text or chat message — no legitimate company or contact needs it that way.
  • Go directly to the app or official website for any account, delivery, or order question instead of tapping a link in a message.
  • Turn on two-factor or two-step verification everywhere it’s offered, and use a scam-text filtering feature if your phone or security app has one.
  • Cybersecurity awareness training measurably lowers risk scores (Ansari, 2022) — the pattern above repeats across scams: urgency, an unfamiliar link, and a request for something you’d never normally hand over.

SUPPORT KEMETIC MINDS

Enjoying this coverage? Back the work and find every way to connect with us in one place.

Support the Page →

Kemetic Minds Analysis

Today’s briefing pulled from 4 news sources and 3 peer-reviewed studies. Today’s strongest research signal comes from Concurrency and Computation: Practice and Experience (2021), cited 25 times — the kind of study worth weighing more heavily than a single news anecdote. The pattern worth watching isn’t any single scam headline — it’s whether today’s news matches what the research already predicts about who gets targeted and what actually reduces risk, or whether it’s a genuinely new variant the literature hasn’t caught up to yet.


References

  1. CyberSecurityNews. (2026, August 12). WhatsApp Unveils New Scam Alert Feature to Protect Users from Social Engineering Attacks – CyberSecurityNews. news.google.com
  2. Bing News. (2026, August 12). Surfshark launches Scam Text Protection for suspicious SMS. cybernews.com
  3. Bing News. (2026, August 12). The FTC says a fake Amazon refund text is quietly stealing phone users’ data. msn.com
  4. Bing News. (2026, August 12). First Akira Safe Mode attack disables endpoint detection and response but fails to encrypt, Huntress says. siliconangle.com
  5. Ghourabi (2021). SM‐Detector: A security model based on BERT to detect SMiShing messages in mobile environments. Concurrency and Computation: Practice and Experience. doi.org/10.1002/cpe.6452
  6. Parti (2022). “Elder Scam” Risk Profiles: Individual and Situational Factors of Younger and Older Age Groups’ Fraud Victimization. International Journal of Cybersecurity Intelligence & Cybercrime. doi.org/10.52306/2578-3289.1117
  7. Ansari (2022). A Quantitative Study of Risk Scores and the Effectiveness of AI-Based Cybersecurity Awareness Training Programs. International Journal of Smart Sensor and Adhoc Network.. doi.org/10.47893/ijssan.2022.1212

Investigative Methodology: This briefing is generated on a fixed daily schedule (6:00 AM, America/Chicago) from live news wires and the CrossRef scholarly database. Every news claim is grounded in fetched source text with an APA7 in-text citation. Every peer-reviewed source is a real, DOI-verifiable journal article — filtered to results with a named author list, a named journal, and at least 3 citations to screen out predatory or uncited entries — never a fabricated or paraphrased-from-memory study. Every video embed is verified to be a real, existing video via YouTube’s oEmbed endpoint before publication. The featured image is a real photograph sourced from Pexels, not an AI-generated image. No Wikipedia sources are used.

Stay Connected

Join @kemeticMinds on Telegram →

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

📩 Subscribe for New Posts

Get notified whenever Kemetic Minds publishes a new story.

📡 Subscribe via RSS

Get every new Kemetic Minds post delivered straight to your favorite RSS reader (Feedly, Inoreader, Apple News, etc.).

Subscribe to RSS Feed →
Live Alerts
Fetching verified headlines...
Real-time news • Updates every minute

Archives

  • September 2026
  • August 2026
  • July 2026
  • June 2026
  • May 2026
  • September 11, 2026 by Kemetic Mind Oil Tops $100 as Houthis Seize Yemen's Mocha Port
  • September 11, 2026 by Kemetic Mind Trump: Iran War Won't End Until After November Midterms
  • September 11, 2026 by Kemetic Mind Evening News Recap — September 10, 2026
  • September 11, 2026 by Kemetic Mind South Africa Posts Widest Current Account Gap Since 2015
  • September 11, 2026 by Kemetic Mind Iran-Backed Houthis Seize Yemen's Mokha as Oil Tops $100

Browse by Topic

Pages

  • About Kemetic Minds
  • Bomb Threat Tracker: Live U.S. Map
  • Contact
  • Cookie Policy
  • Cyclospora Outbreak Map: U.S. State-by-State Tracker (Live)
  • Cyclospora Tracker Subscribers (do not delete)
  • Disclaimer
  • Frequently Asked Questions
  • Home
  • Live Settlement Tracker: Open Class Action Claims
  • LIVE UPDATES: Justice for Kohen Wiley — Tracking the Senatobia Police Killing
  • LIVE UPDATES: Middle East Escalation & Global War Tensions
  • LIVE UPDATES: The Karmelo Anthony Case — Austin Metcalf Murder Trial & Appeal
  • LIVE UPDATES: The Nolan Wells Case — Horn Island, Mississippi
  • LIVE: Food Recall & Foodborne Illness Tracker — Search by State
  • Ma'at Feedback Log (Internal)
  • Missing People in the United States
  • Moved: About Kemetic Minds
  • Privacy Policy
  • Project 2025 Tracker: Timeline & Impact on the Black Community
  • Pythagorean Numerology Calculator — Words, Names, Dates & Historical Connections
  • Terms of Service
  • U.S. Voting Dates

Kemetic Mind Telegram

Click Here
© 2026 Kemetic Minds | Powered by Minimalist Blog WordPress Theme
Ask Ma’at
Ma’at is thinking…

Powered by
Necessary cookies enable essential site features like secure log-ins and consent preference adjustments. They do not store personal data.
None
Functional cookies support features like content sharing on social media, collecting feedback, and enabling third-party tools.
None
Analytical cookies track visitor interactions, providing insights on metrics like visitor count, bounce rate, and traffic sources.
None
Advertisement cookies deliver personalized ads based on your previous visits and analyze the effectiveness of ad campaigns.
None
Unclassified cookies are cookies that we are in the process of classifying, together with the providers of individual cookies.
None
Powered by