Skip to content
Golden and blue Ancient Egyptian art with pharaoh, Eye of Horus, scarab, and "KEMETIC MIND" text.
Menu
  • Home
  • Breaking News
  • Live Trackers
    • Karmelo Anthony Case
    • Kohen Wiley Case
    • Nolan Wells Case
    • Global Conflict Tracker
    • Cyclospora Outbreak Map
    • Food Recall Tracker
    • Missing People in the United States
    • Bomb Threat Tracker
  • Tools
    • Numerology Calculator
    • Live Settlement Tracker
    • U.S. Voting Dates
    • Project 2025 Tracker
    • Frequently Asked Questions
  • Civil Rights
  • Kemetic Wisdom
  • Numerology
  • World News
  • About Kemetic Minds
    • Contact
  • Legal
    • Privacy Policy
    • Cookie Policy
    • Terms of Service
    • Disclaimer
Menu
Newsroom
Oil Tops $100 as Houthis Seize Yemen’s Mocha PortTrump: Iran War Won’t End Until After November MidtermsEvening News Recap — September 10, 2026South Africa Posts Widest Current Account Gap Since 2015Iran-Backed Houthis Seize Yemen’s Mokha as Oil Tops $1005th Circuit: Clean Water Is Not a Constitutional Right in JacksonIran Damages US Fighter Jets in Jordan as Hormuz War WidensSupreme Court Stays Missouri Order, Blocking 7-1 GOP GerrymanderOil Tops $100 as Houthis Seize Yemen’s Mocha PortTrump: Iran War Won’t End Until After November MidtermsEvening News Recap — September 10, 2026South Africa Posts Widest Current Account Gap Since 2015Iran-Backed Houthis Seize Yemen’s Mokha as Oil Tops $1005th Circuit: Clean Water Is Not a Constitutional Right in JacksonIran Damages US Fighter Jets in Jordan as Hormuz War WidensSupreme Court Stays Missouri Order, Blocking 7-1 GOP Gerrymander
Cybersecurity & Scam Daily Briefing

Consumer Rights · Aug 18, 2026Pokémon Center Breach Leaks Customer Data via Shipping Partner

Posted on August 18, 2026 by Kemetic Mind

KEMETIC MINDS
Cybersecurity & Scam Daily Briefing — August 18, 2026


Photo: Gustavo Fring via Pexels (source)

📢 SPREAD THE WORD — Share this report

Facebook Post on X WhatsApp LinkedIn Reddit
  • Pokémon Center UK/Germany customers’ names, addresses, phones, emails, and order details were stolen via logistics partner CEVA (BleepingComputer, 2026).
  • Valve told European Steam hardware customers the same types of data were exposed in the CEVA attack (BleepingComputer, 2026).
  • Three-quarters of ransomware attacks now target mid-market firms, putting smaller businesses on the front line (Infosecurity Magazine, 2026).
  • A new Akira ransomware attack disabled security tools — then its own encryptor crashed (Bing News, 2026).
  • Overconfidence — thinking “it won’t happen to me” — was a predictor of online fraud victimization in a 2025 study (Balakrishnan et al., 2025, PLOS ONE).
  • Fake rental listings are a known scam track, and Bitdefender published a guide on spotting them (Bitdefender, 2026).

1. Quick Signs That Reveal a Scam

SCAM WATCH: Fake Bank Fraud / One-Time Passcode Scam
kemeticmind.com — Cybersecurity Scam Watch
Text Message • Bank Fraud Alert (spoofed)
Bank fraud alert: We detected a $749 charge at an online store. If this wasn't you, reply NO and text us the 6-digit code just sent to your phone to cancel.
RED FLAG: unsolicited security alert
RED FLAG: asks for verification code
RED FLAG: urgent reply required
I didn't make that purchase. But why do you need a code? I can call my bank directly using the number on my card.
If you don't verify now, your account will be locked temporarily. The code expires in 5 minutes. Text it here to prevent fraud.
RED FLAG: pressure to respond fast
RED FLAG: threatens account lockout
RED FLAG: creates false deadline
HOW TO RESPOND
Never share a one-time passcode with someone who contacts you first. If you get a fraud alert, ignore the text and call your bank using the number on the back of your card to verify any charges.

Watch how a real fake bank fraud / one-time passcode scam unfolds — and the red flags that give it away.

A new video briefing from Bing News shows that a few simple checks can reveal a scam before you respond or share information (Bing News, 2026).

The clip walks through quick indicators to watch for and invites viewers to add their own warning signs (Bing News, 2026).

How to Avoid This Scam

  • Before replying to any unexpected message, stop and run a simple check — quick checks catch most scams (Bing News, 2026).
  • If someone pressures you to share information immediately, treat the pressure itself as a warning sign.
  • Build a family list of warning signs so every household member spots the same patterns faster.

Video: My Parents Replaced My Wedding Cake With My Sister’s Gender Reveal Cake—So I Took Back the Mic. Source: Revenge Served Cold.

2. Fake Rental Listings

SCAM WATCH: Fake Rental Listing Deposit
kemeticmind.com — Cybersecurity Scam Watch
Text Message • Unknown Number
Hi! I saw you messaged about the 2BR at $850/mo. It’s still available. I’m working abroad and can’t show it, but I want a reliable renter. Send the $500 deposit and I’ll mail the lease and keys.
RED FLAG: Price seems too good
RED FLAG: Landlord out of country
RED FLAG: Deposit before viewing
I’d need to see the place first. Could we do a video tour, or can you have someone local let me walk through? I don’t send money without seeing the unit.
I understand, but the rent is low because I just want this handled. Four other applicants are ready to pay. Send $500 via Zelle now and I’ll hold it for you — it’s refundable if the lease isn’t signed.
RED FLAG: Refundable deposit pressure
RED FLAG: Other renters waiting
RED FLAG: Zelle-only no protection
HOW TO RESPOND
Never pay a deposit or application fee before you’ve toured the property in person or by video. Verify ownership through county property records, and avoid Zelle, Cash App, wire transfers, or gift cards — those payments have no buyer protection.

Watch how a real fake rental listing deposit unfolds — and the red flags that give it away.

Security firm Bitdefender published a guide on how to spot and avoid fake rental listings (Bitdefender, 2026).

The guide is aimed at anyone searching for housing online, where fraudulent ads are common (Bitdefender, 2026).

How to Avoid This Scam

  • Read Bitdefender’s rental-scam guide before you hunt for an apartment, and share it with anyone in your household who is searching (Bitdefender, 2026).
  • See the property yourself — in person or on a live video call — before sending money or personal documents.
  • Paste the listing’s photos and text into a search engine to check whether the same ad reappears under a different name or owner.
  • Never pay a deposit until you have a written lease and can confirm the person is the actual owner.

phishing email laptop warning
Photo: Markus Winkler via Pexels (source)

3. Pokémon Center Data Breach

SCAM WATCH: Fake Order Cancellation Refund Phish
kemeticmind.com — Cybersecurity Scam Watch
✉Email • Customer Support (spoofed)
✉📧 New Email • Email
We're sorry but your order #12345 was canceled due to a warehouse issue. To receive a full refund, please click here to verify your payment method within 24 hours.
RED FLAG: Urgent refund prompt
RED FLAG: Spoofed sender
RED FLAG: Suspicious link
🖱️ Click — I didn't click that. What is the order number and how do I know this is really you?
🔒 Ransomware Activates
If you don't confirm your bank details now, the refund will be void. Just send a $1 verification payment to this link and we'll process it immediately.
RED FLAG: Pressure to act fast
RED FLAG: Asks for bank details
RED FLAG: False urgency
HOW TO RESPOND
After a data breach, never click refund links in unsolicited emails or submit banking details. Real companies don't ask you to send a 'verification payment' — go directly to the official website and check your order status instead.

Watch how a real fake order cancellation refund phish unfolds — and the red flags that give it away.

Pokémon Center is notifying customers in the United Kingdom and Germany that their personal and order information was stolen — but the breach happened at third-party shipping partner CEVA Logistics, not at Pokémon Center itself (BleepingComputer, 2026).

Attackers broke into CEVA’s systems between July 29 and August 1, and the exposed records included names, addresses, phone numbers, email addresses, and information about ordered products for PokemonCenter.com customers (BleepingComputer, 2026).

CEVA is a subsidiary of the CMA CGM Group, the world’s third-largest shipping company, with 1,000 warehouses and $18.3 billion in revenue in 2025 (BleepingComputer, 2026). The same attack also hit Valve, which notified European Steam hardware customers that their names, addresses, phone numbers, emails, and product order information were stolen (BleepingComputer, 2026).

Eight European warehouses were disrupted, causing shipping delays, and Pokémon Center canceled some orders, telling customers: “We’re sorry to inform you that we have had to cancel your recent order [order number] due to an unforeseen fulfilment issue” (BleepingComputer, 2026).

How to Avoid This Scam

  • If you ordered from PokemonCenter.com in the UK or Germany, check your inbox for a data breach notification from Pokémon Center (BleepingComputer, 2026).
  • Go to the retailer’s official website directly — don’t click links in emails claiming to be about the breach.
  • Be extra suspicious of calls or texts that reference your recent order: names, addresses, and phone numbers were exposed, so criminals can make such messages look convincing (BleepingComputer, 2026).
  • Expect some legitimate delays: the attack disrupted eight European warehouses, so real logistics emails will be mixed in with scam attempts (BleepingComputer, 2026).

family online safety internet security
Photo: Ann H via Pexels (source)

4. Akira Ransomware’s Self-Own Goal

SCAM WATCH: Fake EDR "Fix" Lure
kemeticmind.com — Cybersecurity Scam Watch
✉Email • "IT Support" (spoofed)
✉📧 New Email • Email
IT Security Alert: Critical EDR conflict detected on your workstation. Download the attached fix and run it as admin to disable the faulty service. — IT Helpdesk
RED FLAG: Spoofed IT Helpdesk
RED FLAG: Urgent security alert
RED FLAG: Attachment or link
🖱️ Click — I wasn't expecting this. Why do I need to disable my antivirus? Is that really necessary?
🔒 Ransomware Activates
If you don't act in 15 minutes, your files will be quarantined and your account locked. Our logs show the conflict is active. Run the .exe now or call the admin.
RED FLAG: False deadline
RED FLAG: Threatens lockout
RED FLAG: Pressure to run .exe
HOW TO RESPOND
If an email pushes you to disable your EDR/antivirus or run an untrusted .exe, it's likely a ransomware setup. Real IT teams never ask for that via email — call your helpdesk directly using a known number before taking any action.

Watch how a real fake edr "fix" lure unfolds — and the red flags that give it away.

In a new attack, the Akira ransomware gang disabled EDR tools at a victim’s systems — but then its own encryptor crashed, and researchers described the gang as crashing its own attack (Bing News, 2026).

EDR (endpoint detection and response) is security software that watches computers for signs of an attack; ransomware gangs commonly try to disable it first (Bing News, 2026).

Researchers still warn that this “worrying practice” — shutting down security tools before encryption — continues, even though this particular attempt failed (Bing News, 2026).

How to Avoid This Scam

  • If you run a business, keep EDR running and make sure its alerts actually reach a human — attackers try to kill this software first (Bing News, 2026).
  • Don’t rely on attackers making mistakes: this encryptor crashed, but ransomware gangs learn and adjust (Bing News, 2026).
  • If your security software suddenly disappears or turns itself off, disconnect the device from the network and get help immediately.

5. Ransomware Hits Mid-Market Firms Hard

SCAM WATCH: Fake Supplier Invoice Ransomware
kemeticmind.com — Cybersecurity Scam Watch
✉Email • "Supplier" (spoofed)
✉📧 New Email • Email
Subject: Urgent: Outstanding Invoice #98214. Our system shows your payment is overdue. The revised invoice is attached as a ZIP archive. Please review and process today to avoid interest charges.
RED FLAG: Unexpected ZIP attachment
RED FLAG: Urgent payment demand
RED FLAG: Spoofed supplier address
🖱️ Click — I never requested an invoice from you, and our IT policy blocks ZIPs from external senders. I'm forwarding this to security.
🔒 Ransomware Activates
Your network has been encrypted. To restore access, send 2.5 BTC to the address below within 48 hours. If you contact law enforcement, we will publish your customer data.
RED FLAG: Demands Bitcoin ransom
RED FLAG: Threatens to leak data
RED FLAG: Short 48-hour deadline
HOW TO RESPOND
This scam works because a spoofed supplier email hides ransomware inside a ZIP attachment. Always verify invoice attachments over the phone using a known supplier number, and keep offline, encrypted backups so you can restore files without paying the ransom.

Watch how a real fake supplier invoice ransomware unfolds — and the red flags that give it away.

Three-quarters of ransomware attacks target mid-market firms, according to reporting from Infosecurity Magazine (Infosecurity Magazine, 2026).

Mid-market firms are businesses bigger than a local shop but smaller than a global corporation — exactly the organizations that often lack a full security team (Infosecurity Magazine, 2026).

How to Avoid This Scam

  • If you own or make IT decisions for a midsize company, treat ransomware as a “when,” not an “if” (Infosecurity Magazine, 2026).
  • Keep at least one backup disconnected from your network so an attacker can’t encrypt it.
  • Ask your employer or your company’s IT decision-maker where backups live and whether they’ve been tested — before an attack, not after.

What the Research Actually Says

A two-part 2025 study of Malaysian adults (820 people in the first survey, 629 in the validation survey) found that overconfidence predicted online fraud victimization, with an odds ratio of 1.453 (95% CI [1.119, 1.887], p = 0.005) (Balakrishnan et al., 2025, PLOS ONE). In plain terms: people who were most sure they could never be scammed were about 45% more likely to become victims, even though most respondents said they were aware of digital privacy (Balakrishnan et al., 2025, PLOS ONE).

The same study found that social influence — being swayed by others — also predicted victimization, and it identified five survey factors: self-awareness, safe practice, bank trust, overconfidence, and social influence (Balakrishnan et al., 2025, PLOS ONE).

On identity theft, a 2011 study in the Journal of Financial Crime examined consumer identity theft prevention and identity fraud detection behaviours — what actions consumers can take to prevent theft and catch fraud early (Archer, 2011, Journal of Financial Crime).

A 2023 study in SN Computer Science — “Engineering the Human Mind: Social Engineering Attack Using Kali Linux” — examined how attackers use the Kali Linux toolkit to run social engineering attacks, meaning they trick people instead of hacking the computer directly (James, 2023, SN Computer Science).

Today’s Family Safety Checklist

  • Drop the “it won’t happen to me” mindset: overconfidence predicted victimization in the 2025 PLOS ONE study, so walk through real scam scripts with your family instead (Balakrishnan et al., 2025, PLOS ONE).
  • Run the quick check before every reply: pause, verify the sender, and never share information on demand (Bing News, 2026).
  • If you ordered from Pokémon Center or another CEVA-shipped retailer, assume your name, address, and phone number are exposed, and treat any call or text referencing your order with suspicion (BleepingComputer, 2026).
  • If you own or work for a midsize company, push for tested offline backups and security monitoring: three-quarters of ransomware attacks target mid-market firms (Infosecurity Magazine, 2026).

SUPPORT KEMETIC MINDS

Enjoying this coverage? Back the work and find every way to connect with us in one place.

Support the Page →

Kemetic Minds Analysis

Today’s briefing pulled from 5 news sources and 3 peer-reviewed studies. Today’s strongest research signal comes from PLOS ONE (2025), cited 13 times — the kind of study worth weighing more heavily than a single news anecdote. The pattern worth watching isn’t any single scam headline — it’s whether today’s news matches what the research already predicts about who gets targeted and what actually reduces risk, or whether it’s a genuinely new variant the literature hasn’t caught up to yet.


References

  1. Bing News. (2026, August 18). Quick signs that can reveal a scam. msn.com
  2. bitdefender.com. (2026, August 18). Rental scams: How to spot and avoid fake rental listings – bitdefender.com. news.google.com
  3. Bing News. (2026, August 17). Pokémon Center data breach exposes customer info, cancels some orders. bleepingcomputer.com
  4. Bing News. (2026, August 17). Ransomware gang crashes own attack — with no one to blame but themselves. msn.com
  5. Bing News. (2026, August 18). Three-quarters of Ransomware Attacks Target Mid-Market Firms. infosecurity-magazine.com
  6. Balakrishnan, Ahhmed, Basheer (2025). Personal, environmental and behavioral predictors associated with online fraud victimization among adults. PLOS ONE. doi.org/10.1371/journal.pone.0317232
  7. James (2023). Engineering the Human Mind: Social Engineering Attack Using Kali Linux. SN Computer Science. doi.org/10.1007/s42979-023-02321-y
  8. Archer (2011). Consumer identity theft prevention and identity fraud detection behaviours. Journal of Financial Crime. doi.org/10.1108/13590791211190704

Investigative Methodology: This briefing is generated on a fixed daily schedule (6:00 AM, America/Chicago) from live news wires and the CrossRef scholarly database. Every news claim is grounded in fetched source text with an APA7 in-text citation. Every peer-reviewed source is a real, DOI-verifiable journal article — filtered to results with a named author list, a named journal, and at least 3 citations to screen out predatory or uncited entries — never a fabricated or paraphrased-from-memory study. Every video embed is verified to be a real, existing video via YouTube’s oEmbed endpoint before publication. The featured image is a real photograph sourced from Pexels, not an AI-generated image. No Wikipedia sources are used.

Stay Connected

Join @kemeticMinds on Telegram →

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

📩 Subscribe for New Posts

Get notified whenever Kemetic Minds publishes a new story.

📡 Subscribe via RSS

Get every new Kemetic Minds post delivered straight to your favorite RSS reader (Feedly, Inoreader, Apple News, etc.).

Subscribe to RSS Feed →
Live Alerts
Fetching verified headlines...
Real-time news • Updates every minute

Archives

  • September 2026
  • August 2026
  • July 2026
  • June 2026
  • May 2026
  • September 11, 2026 by Kemetic Mind Oil Tops $100 as Houthis Seize Yemen's Mocha Port
  • September 11, 2026 by Kemetic Mind Trump: Iran War Won't End Until After November Midterms
  • September 11, 2026 by Kemetic Mind Evening News Recap — September 10, 2026
  • September 11, 2026 by Kemetic Mind South Africa Posts Widest Current Account Gap Since 2015
  • September 11, 2026 by Kemetic Mind Iran-Backed Houthis Seize Yemen's Mokha as Oil Tops $100

Browse by Topic

Pages

  • About Kemetic Minds
  • Bomb Threat Tracker: Live U.S. Map
  • Contact
  • Cookie Policy
  • Cyclospora Outbreak Map: U.S. State-by-State Tracker (Live)
  • Cyclospora Tracker Subscribers (do not delete)
  • Disclaimer
  • Frequently Asked Questions
  • Home
  • Live Settlement Tracker: Open Class Action Claims
  • LIVE UPDATES: Justice for Kohen Wiley — Tracking the Senatobia Police Killing
  • LIVE UPDATES: Middle East Escalation & Global War Tensions
  • LIVE UPDATES: The Karmelo Anthony Case — Austin Metcalf Murder Trial & Appeal
  • LIVE UPDATES: The Nolan Wells Case — Horn Island, Mississippi
  • LIVE: Food Recall & Foodborne Illness Tracker — Search by State
  • Ma'at Feedback Log (Internal)
  • Missing People in the United States
  • Moved: About Kemetic Minds
  • Privacy Policy
  • Project 2025 Tracker: Timeline & Impact on the Black Community
  • Pythagorean Numerology Calculator — Words, Names, Dates & Historical Connections
  • Terms of Service
  • U.S. Voting Dates

Kemetic Mind Telegram

Click Here
© 2026 Kemetic Minds | Powered by Minimalist Blog WordPress Theme
Ask Ma’at
Ma’at is thinking…

Powered by
Necessary cookies enable essential site features like secure log-ins and consent preference adjustments. They do not store personal data.
None
Functional cookies support features like content sharing on social media, collecting feedback, and enabling third-party tools.
None
Analytical cookies track visitor interactions, providing insights on metrics like visitor count, bounce rate, and traffic sources.
None
Advertisement cookies deliver personalized ads based on your previous visits and analyze the effectiveness of ad campaigns.
None
Unclassified cookies are cookies that we are in the process of classifying, together with the providers of individual cookies.
None
Powered by