{"id":402456,"date":"2026-08-16T06:11:43","date_gmt":"2026-08-16T06:11:43","guid":{"rendered":"https:\/\/malwaretips.com\/blogs\/?p=402456"},"modified":"2026-08-16T06:11:43","modified_gmt":"2026-08-16T06:11:43","slug":"roundcube-domain-registration-verification-email-scam","status":"publish","type":"post","link":"https:\/\/malwaretips.com\/blogs\/roundcube-domain-registration-verification-email-scam\/","title":{"rendered":"Roundcube Domain Registration Verification Email Scam Steals Passwords"},"content":{"rendered":"<p>A domain compliance notice says Roundcube is verifying the email address attached to a registration. ICANN rules supposedly require confirmation within 3 days or the domain and related services may be interrupted.<\/p><div id=\"mwtad62167685\" class=\"gas_fallback-ad_309684--placement_400588\" style=\"margin-top: 30px;margin-bottom: 30px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"3957935887\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div>\n<figure><img decoding=\"async\" src=\"https:\/\/malwaretips.com\/blogs\/wp-content\/uploads\/2026\/08\/roundcube-domain-verification-email.png\" alt=\"Reconstruction of the Roundcube domain registration verification email scam citing ICANN and a 3-day deadline\" title=\"\"><\/figure>\n<p>The Roundcube Domain Registration Verification email scam combines two real names in a false role. Roundcube is webmail software, not the registrar responsible for validating domain-registration contacts.<\/p>\n<div id=\"mwtad545353322\" class=\"mwtadp1 mwtadentity-placement\" style=\"margin-top: 50px;margin-bottom: 50px;\"> \r\n<ins class=\"adsbygoogle\"\r\n     style=\"display:block; text-align:center;\"\r\n     data-ad-layout=\"in-article\"\r\n     data-ad-format=\"fluid\"\r\n     data-ad-client=\"ca-pub-7750719144850257\"\r\n     data-ad-slot=\"7312657698\"><\/ins>\r\n <\/div><p>The Verify Email Address button opens a copied Roundcube sign-in and asks for the full email address and password. That mailbox credential is the real target of the campaign.<\/p>\n<p>ICANN rules can require registrars to verify contact information in specific circumstances, which makes the premise sound plausible. The request must still be confirmed with the actual registrar, and it should never turn Roundcube into a domain authority.<\/p>\n<figure><img decoding=\"async\" src=\"https:\/\/malwaretips.com\/blogs\/wp-content\/uploads\/2026\/08\/roundcube-domain-fake-login.png\" alt=\"Reconstruction of the fake Roundcube Webmail login used to steal a domain contact&amp;apos;s password\" title=\"\"><\/figure>\n<div id=\"mwtad3544128193\" class=\"gas_fallback-ad_309747-ad_309691-placement_400589\" style=\"margin-top: 30px;margin-bottom: 30px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"9589536513\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div><h2>Overview<\/h2>\n<h3>The email mixes a real rule with the wrong organization<\/h3>\n<p>The message says a regular domain compliance process requires verification of a functional contact address. It presents Roundcube as if it participates in registration oversight with ICANN.<\/p>\n<p>ICANN sets requirements for accredited registrars, while the registrar or reseller communicates with the registrant. Roundcube provides software that a separate email host installs.<\/p>\n<h3>A 3-day deadline makes suspension feel close<\/h3>\n<p>The recipient is told to confirm the address within 3 days or face service interruption. The email may include the target address and a registrar-style signature to look personalized.<\/p>\n<div id=\"mwtad3311998970\" class=\"mwtadp3 mwtadentity-placement\" style=\"margin-top: 30px;margin-bottom: 30px;\"><script async src=\"https:\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\"\r\n     crossorigin=\"anonymous\"><\/script>\r\n<ins class=\"adsbygoogle\"\r\n     style=\"display:block; text-align:center;\"\r\n     data-ad-layout=\"in-article\"\r\n     data-ad-format=\"fluid\"\r\n     data-ad-client=\"ca-pub-7750719144850257\"\r\n     data-ad-slot=\"5910219726\"><\/ins>\r\n<script>\r\n     (adsbygoogle = window.adsbygoogle || []).push({});\r\n<\/script><\/div><p>The documented deadline does not match the whole context of official verification rules, and it does not prove that the sender is the registrar responsible for the domain.<\/p>\n<h3>The button changes compliance into a password request<\/h3>\n<div id=\"mwtad1873706427\" class=\"gas_fallback-ad_309686-ad_309691-placement_400597\" style=\"margin-top: 30px;margin-bottom: 30px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"6935453015\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div><p>Verify Email Address leads to a fake Roundcube Webmail page. The form requests the full email address and current password instead of confirming a registrar token inside the known domain account.<\/p>\n<p>A stolen mailbox gives attackers access to registrar notices, password resets, invoices, and business contacts. That access can later help them target the domain itself.<\/p>\n<ul>\n<li>The subject cites ICANN validation.<\/li>\n<li>Roundcube is presented as a domain-compliance service.<\/li>\n<li>The recipient&#x27;s address is called a registration contact.<\/li>\n<li>A 3-day verification deadline is imposed.<\/li>\n<li>Service interruption is threatened.<\/li>\n<li>Verify Email Address opens a Roundcube-style login.<\/li>\n<li>The form asks for the full email address and password.<\/li>\n<li>The actual registrar is not verified through the message.<\/li>\n<\/ul>\n<div id=\"mwtad3763594865\" class=\"gas_fallback-ad_309748-ad_309691-placement_400590\" style=\"margin-top: 30px;margin-bottom: 30px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"3906789406\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div><h2>The Real Roles of ICANN, Registrars, and Roundcube<\/h2>\n<p>ICANN coordinates important parts of the global domain-name system and sets contractual requirements for accredited registrars. It does not operate every customer&#x27;s webmail or registrar account.<\/p>\n<p>The registrar is the company through which the domain is registered. A reseller or hosting provider may handle the customer relationship, billing, contact verification, and support.<\/p>\n<p>Roundcube is an open-source browser-based mail client. Hosting providers install it so their customers can read email, but the Roundcube project does not create or administer those mailboxes.<\/p>\n<p>These roles can overlap in one hosting package from the user&#x27;s perspective. The same provider may sell the domain and email, which is why a message that blends the names can initially sound reasonable.<\/p>\n<p>The distinction becomes clear at the login. A registrar verification should remain tied to the known registrar and a specific domain record, while the scam asks for a general mailbox password through copied Roundcube branding.<\/p>\n<div id=\"mwtad1361566257\" class=\"gas_fallback-ad_309749-ad_309691-placement_400591\" style=\"margin-top: 30px;margin-bottom: 30px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"5354318971\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div><h2>What Official ICANN and Roundcube Guidance Establishes<\/h2>\n<p>ICANN explains that registrars may need to validate or verify contact information after registration, transfer, changes, or evidence that the data is inaccurate. The registrar controls the process and the registrant can identify that company independently.<\/p>\n<p>Official material generally discusses a longer verification framework than the unexplained 3-day ultimatum in this campaign. Requirements depend on the trigger and registrar process, not on a generic Roundcube message.<\/p>\n<p>Roundcube warns that it is software, not an email service with end-user accounts. The project says it does not send account-suspension messages or ask users to enter email passwords on external sites.<\/p>\n<p>A genuine contact-verification notice should identify the registrar, affected domain, reason, and an account route that matches the registrar. The recipient can verify it by logging into the registrar dashboard directly.<\/p>\n<p>The campaign&#x27;s use of legitimate names is not evidence of affiliation. The copied login collects a mailbox credential that neither ICANN nor the Roundcube project needs for routine domain-contact verification.<\/p>\n<p>A registrar verification link may contain a unique token that confirms control of an address. That is different from asking the recipient to surrender the existing webmail password to a site that is not the mail host.<\/p>\n<p>Domain suspension and mailbox suspension are also different outcomes. The scam merges them into one broad interruption threat so the recipient cannot tell which account, contract, or service is supposedly at risk.<\/p>\n<p>Invoices and renewal notices can identify the registrar of record. Comparing those records with the sender is a practical check that does not depend on the logo, signature, or compliance language copied into the email.<\/p>\n<div id=\"mwtad2200199720\" class=\"gas_fallback-ad_309750-ad_309691-placement_400592\" style=\"margin-top: 30px;margin-bottom: 30px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"4041237300\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div><h2>How the Roundcube Domain Registration Verification Email Scam Works<\/h2>\n<h3>Step 1: A domain compliance notice arrives<\/h3>\n<p>The subject references ICANN validation and the recipient&#x27;s domain or email address. A registrar-style signature makes the message look administrative.<\/p>\n<p>The sender may know the address from public records, prior exposure, or ordinary email harvesting. That knowledge does not prove access to the domain account.<\/p>\n<h3>Step 2: Roundcube is assigned a false role<\/h3>\n<p>The body says Roundcube is verifying addresses associated with domain registrations. This turns familiar webmail software into an apparent compliance authority.<\/p>\n<p>The Roundcube project does not manage the recipient&#x27;s registration. The real registrar can be found through existing invoices and the official account.<\/p>\n<h3>Step 3: ICANN requirements supply authority<\/h3>\n<p>The message says a valid functional address is mandatory. That general concept resembles real registrar obligations and makes the warning harder to dismiss.<\/p>\n<p>A true concept does not authenticate a specific email. The sender, affected domain, trigger, and verification route must still be genuine.<\/p>\n<h3>Step 4: A 3-day deadline creates urgency<\/h3>\n<p>Service interruption is threatened if the recipient does not confirm quickly. The user may fear losing the website, mail, or domain registration.<\/p>\n<p>The registrar dashboard can reveal whether verification is pending. The deadline is not a reason to bypass that check.<\/p>\n<h3>Step 5: Verify Email Address opens fake Roundcube<\/h3>\n<p>The destination displays a familiar Roundcube logo and asks for the full email address and password. It may appear to be the final step in the compliance process.<\/p>\n<p>The browser address, not the interface, identifies the host. A copied sign-in on an unrelated domain remains phishing.<\/p>\n<h3>Step 6: The mailbox password is captured<\/h3>\n<p>Submitting the form can transmit the password to the campaign operator. An error, second prompt, or success notice may follow.<\/p>\n<p>No registrar record needs to change for the attacker to claim verification succeeded. The page exists to collect the credential.<\/p>\n<h3>Step 7: Email access creates domain risk<\/h3>\n<p>The inbox may contain registrar notices, invoices, authorization codes, and password-reset links. Attackers can learn which company manages the domain and target it next.<\/p>\n<p>They can also impersonate the owner, add forwarding rules, and send phishing from the real address to customers or coworkers.<\/p>\n<div id=\"mwtad1692943694\" class=\"gas_fallback-ad_309751-ad_309691-placement_400593\" style=\"margin-top: 50px;margin-bottom: 50px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"3690286463\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div><h2>Company and Checkout Checks<\/h2>\n<h3>Identify the real registrar<\/h3>\n<p>Use an invoice, saved bookmark, or an independent registration lookup to determine which company manages the domain. Open that company&#x27;s official portal directly.<\/p>\n<p>Check the affected domain, contact data, verification status, and account notices. Do not let the email define who the registrar is.<\/p>\n<h3>Separate the registrar from Roundcube<\/h3>\n<p>Find the organization that operates the mailbox and the exact webmail URL it supplied. Roundcube branding may be customized or shared by many unrelated providers.<\/p>\n<p>The Roundcube project cannot verify the recipient&#x27;s registration or reset the hosted mailbox password. Those tasks belong to the actual providers.<\/p>\n<h3>Inspect the verification route<\/h3>\n<p>A legitimate process should match the registrar&#x27;s domain and identify the registration being verified. It should not require the mailbox password on an unrelated site.<\/p>\n<p>If a link is uncertain, ignore it and complete any pending action after an independent login to the registrar account.<\/p>\n<h3>Ask the registrar to confirm<\/h3>\n<p>Contact support through the official account or known telephone number. Provide the subject and headers and ask whether a verification notice was sent.<\/p>\n<p>Report the phishing email so the registrar and mail host can warn other customers and block the destination.<\/p>\n<div id=\"deskad1\" class=\"gas_fallback-ad_174270-ad_309691-placement_400594\" style=\"margin-top: 50px;margin-bottom: 50px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"5700081834\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div><h2>Warning Signs to Check Before You Act<\/h2>\n<ul>\n<li>Roundcube is described as a domain registrar or compliance service.<\/li>\n<li>ICANN is used to create authority without naming the real registrar.<\/li>\n<li>The affected domain is unclear or missing.<\/li>\n<li>A 3-day deadline is imposed without account context.<\/li>\n<li>Service interruption is threatened broadly.<\/li>\n<li>Verify Email Address leads away from the registrar.<\/li>\n<li>A Roundcube login appears during a domain-registration task.<\/li>\n<li>The full mailbox password is requested.<\/li>\n<li>The destination does not match the usual webmail host.<\/li>\n<li>The password manager refuses to autofill.<\/li>\n<li>The registrar dashboard shows no pending verification.<\/li>\n<li>Official support cannot confirm the message.<\/li>\n<\/ul>\n<p>The email becomes internally inconsistent when its roles are separated. ICANN sets requirements, a registrar manages the domain, and Roundcube displays mail. A Roundcube password form cannot prove registrar compliance.<\/p>\n<h2>What to Do if You Have Fallen Victim to This Scam<\/h2>\n<ol>\n<li><strong>Change the exposed password immediately.<\/strong> Open your registrar&#039;s known portal and the Roundcube URL supplied by your actual email host through a saved bookmark or its official application, not through the Roundcube domain-registration verification message. The password entered during that roundcube-domain message should never be used again. Give every affected service a different replacement.<\/li>\n<li><strong>Harden the account targeted by the Roundcube registration request.<\/strong> The password entered during that roundcube-domain message should never be used again. Give every affected service a different replacement. Check whether this roundcube-domain case led to new recovery or authentication methods. Remove anything unfamiliar before enabling stronger MFA.<\/li>\n<li><strong>End the access created through the Roundcube registration request.<\/strong> Sign out all other sessions from the hosting dashboard or bookmarked webmail page, revoke unfamiliar OAuth grants, and reconnect trusted mail applications only after the password change. This closes tokens that can survive a simple reset.<\/li>\n<li><strong>Review the mailbox for changes connected with the Roundcube registration request.<\/strong> Remove unknown forwarding addresses, delegates, inbox rules, filters, and automatic replies. Review sent, deleted, trash, and recovery notices around this roundcube-domain incident. Look for activity the account owner did not initiate.<\/li>\n<li><strong>Protect the wider account chain.<\/strong> Prioritize webmail, domain, and hosting accounts. After that roundcube-domain message, protect every service that can be reset through the affected mailbox. Give banking and workplace access priority.<\/li>\n<li><strong>Protect the service impersonated by the email.<\/strong> Review webmail sessions, domain contacts, forwarding rules, registrar access, and accounts recovered through the inbox through its official account and contact support through a verified channel. After this roundcube-domain phishing attempt, compare the genuine profile with your records. Reverse unexplained changes to devices, addresses, documents, and payment methods.<\/li>\n<li><strong>Check the device used to open the Roundcube registration request.<\/strong> Use Malwarebytes after this roundcube-domain phishing attempt whenever an attachment or browser add-on was opened. Review installed software before returning to banking or email.<\/li>\n<li><strong>Reduce the chance of reopening a related page.<\/strong> AdGuard or another reputable DNS and content blocker may stop known phishing hosts and malicious advertisements tied to the Roundcube registration request. Keep checking destination addresses after this roundcube-domain incident. New campaign domains can appear faster than blocklists update.<\/li>\n<li><strong>Report the phishing message.<\/strong> Use the mail provider&#039;s Report Phishing control and notify your domain registrar, hosting provider, workplace administrator, and email service. Keep the original headers for that roundcube-domain message, not only a cropped screenshot. Administrators can use them to trace and block related messages.<\/li>\n<li><strong>Warn domain owner, registrar, and IT provider through a separate channel.<\/strong> Explain that the Roundcube registration request may have exposed the account and ask them to distrust recent file shares, password requests, invoices, payment changes, or urgent replies until the timeline is confirmed.<\/li>\n<li><strong>Expect follow-up fraud based on the Roundcube registration request.<\/strong> Anyone citing that roundcube-domain message while promising recovery must be verified independently. A demand for money first is a warning sign. Seek support for this roundcube-domain case through known channels. A provider or incident responder verified for this roundcube-domain case is safer than an unsolicited fixer.<\/li>\n<\/ol>\n<h2>Frequently Asked Questions<\/h2>\n<h3>Is the Roundcube domain verification email genuine?<\/h3>\n<p>No. The documented campaign falsely presents Roundcube as part of an ICANN compliance process and uses a copied login to steal webmail credentials.<\/p>\n<h3>Does ICANN require contact verification?<\/h3>\n<p>Registrars can be required to verify certain registration data, but the process comes through the actual registrar and must be checked in that official account.<\/p>\n<h3>Is Roundcube a domain registrar?<\/h3>\n<p>No. Roundcube is open-source webmail software installed by hosting providers. It does not manage domain registrations or end-user mail accounts.<\/p>\n<h3>Why does the message know my email address?<\/h3>\n<p>The address may come from public data, a breach, harvesting, or the delivery list itself. Displaying it does not prove access to the registrar account.<\/p>\n<h3>What if I clicked but entered nothing?<\/h3>\n<p>Close the page, report the message, and check downloads. If no credentials were submitted and nothing was installed, account takeover is less likely.<\/p>\n<h3>What if I entered the Roundcube password?<\/h3>\n<p>Change it through the real mail host, revoke sessions, inspect forwarding, secure the registrar, and replace the password anywhere it was reused.<\/p>\n<h2>The Bottom Line<\/h2>\n<p>The Roundcube Domain Registration Verification email scam uses a real compliance concept but assigns Roundcube a role it does not have. The 3-day deadline leads to a fake webmail sign-in, not a registrar record.<\/p>\n<p>Identify the registrar and mail host independently, then check both accounts. Never submit a mailbox password because an ICANN-themed email asks for it.<\/p>\n<p>If credentials were entered, secure the inbox and registrar immediately. Email access can become the first step toward wider domain and business-account compromise.<\/p>\n<div id=\"mwtad3763628148\" class=\"gas_fallback-ad_176819-ad_309691-placement_400595\" style=\"margin-top: 50px;margin-bottom: 50px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"8386082122\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div>","protected":false},"excerpt":{"rendered":"<p>A domain compliance notice says Roundcube is verifying the email address attached to a registration. ICANN rules supposedly require confirmation within 3 days or the domain and related services may be interrupted. The Roundcube Domain &#8230; <\/p>\n<p class=\"read-more-container\"><a title=\"Roundcube Domain Registration Verification Email Scam Steals Passwords\" class=\"read-more button\" href=\"https:\/\/malwaretips.com\/blogs\/roundcube-domain-registration-verification-email-scam\/#more-402456\" aria-label=\"Read more about Roundcube Domain Registration Verification Email Scam Steals Passwords\">Read more<\/a><\/p>\n","protected":false},"author":51,"featured_media":402446,"comment_status":"open","ping_status":"","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[49],"tags":[],"class_list":["post-402456","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-scam-reports","masonry-post","generate-columns","tablet-grid-50","mobile-grid-100","grid-parent","grid-50","resize-featured-image"],"_links":{"self":[{"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/posts\/402456","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/users\/51"}],"replies":[{"embeddable":true,"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/comments?post=402456"}],"version-history":[{"count":4,"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/posts\/402456\/revisions"}],"predecessor-version":[{"id":403139,"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/posts\/402456\/revisions\/403139"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/media\/402446"}],"wp:attachment":[{"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/media?parent=402456"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/categories?post=402456"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/tags?post=402456"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}