{"id":425668,"date":"2026-10-09T07:41:00","date_gmt":"2026-10-09T07:41:00","guid":{"rendered":"https:\/\/malwaretips.com\/blogs\/?p=425668"},"modified":"2026-10-09T07:41:00","modified_gmt":"2026-10-09T07:41:00","slug":"pagopa-tari-refund-card-details-scam","status":"publish","type":"post","link":"https:\/\/malwaretips.com\/blogs\/pagopa-tari-refund-card-details-scam\/","title":{"rendered":"PagoPA TARI Refund Scam: The Fake \u20ac95 Credit That Collects Card Details"},"content":{"rendered":"<p>A refund notice says you paid too much waste tax. The page has a familiar payment logo, a case number, and money apparently waiting for you.<\/p><div id=\"mwtad2744542347\" class=\"gas_fallback-ad_309684--placement_406659\" style=\"margin-top: 50px;margin-right: 10px;margin-bottom: 50px;margin-left: 10px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"3957935887\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div>\n<p>The PagoPA TARI refund scam starts with that welcome surprise. Before supplying the details it requests, look closely at what the supposed refund actually asks you to do.<\/p>\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"1536\" height=\"1024\" src=\"https:\/\/malwaretips.com\/blogs\/wp-content\/uploads\/2026\/10\/pagopa-tari-refund-card-details-scam-illustration.png\" class=\"wp-image-425669\" alt=\"Illustration of a fake PagoPA TARI refund page showing \u20ac95 and empty payment card fields\" title=\"\" srcset=\"https:\/\/malwaretips.com\/blogs\/wp-content\/uploads\/2026\/10\/pagopa-tari-refund-card-details-scam-illustration.png 1536w, https:\/\/malwaretips.com\/blogs\/wp-content\/uploads\/2026\/10\/pagopa-tari-refund-card-details-scam-illustration-300x200.png 300w, https:\/\/malwaretips.com\/blogs\/wp-content\/uploads\/2026\/10\/pagopa-tari-refund-card-details-scam-illustration-1024x683.png 1024w\" sizes=\"auto, (max-width: 1536px) 100vw, 1536px\" \/><\/figure>\n<div id=\"mwtad4176118441\" class=\"gas_fallback-ad_309746-ad_309685-placement_406660\" style=\"margin-top: 30px;margin-bottom: 30px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"4456629336\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div><h2>Overview<\/h2>\n<h3>The \u20ac95 refund page is a documented phishing trap<\/h3>\n<p>Criminals are impersonating PagoPA to collect personal information and payment card details through a false TARI refund procedure. This is not a dispute over legitimate service fees.<\/p><div id=\"mwtad2459663442\" class=\"gas_fallback-ad_381396-ad_309685-placement_406667\" style=\"margin-top: 50px;margin-bottom: 50px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"1471373341\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div>\n<p>PagoPA is the real public-payment platform whose identity is being abused. TARI is Italy&#8217;s waste tax. Neither name makes an unsolicited refund page trustworthy.<\/p>\n<p><a href=\"https:\/\/cert-agid.gov.it\/news\/falso-rimborso-tari-sfruttato-nelle-nuove-campagne-di-phishing-ai-danni-di-pagopa\/\" target=\"_blank\" rel=\"noopener\">CERT-AGID documented the campaign on September 3, 2026<\/a>, including a page promising \u20ac95 for an alleged excess payment.<\/p>\n<p>The observed procedure requested identification details, contact information, and a card&#8217;s number, expiry date, and CVV. Those requests are the important part, not the attractive refund amount.<\/p><div id=\"mwtad2771062852\" class=\"gas_fallback-ad_309686-ad_309685-placement_406668\" style=\"margin-top: 50px;margin-right: 10px;margin-bottom: 50px;margin-left: 10px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"6935453015\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div>\n<h3>A plausible file number makes the offer look settled<\/h3>\n<p>The investigated page presented a fabricated case reference and an apparent verification result. It made the money seem already approved rather than merely advertised.<\/p>\n<p>That changes the question in the reader&#8217;s mind. Instead of asking whether the refund exists, they start thinking about the quickest way to receive it.<\/p>\n<p>A number displayed on a website is not proof that the municipality reviewed your payments. The page creating the reference also controls the result it displays.<\/p><div id=\"mwtad2613023802\" class=\"gas_fallback-ad_381401-ad_309685-placement_406669\" style=\"margin-top: 50px;margin-right: 10px;margin-bottom: 50px;margin-left: 10px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"5315249587\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div>\n<p>You need confirmation from the authority responsible for your tax account, reached independently. The link offering money cannot authenticate its own claim.<\/p>\n<h3>The warning signs belong to the collection process<\/h3>\n<ul>\n<li>An unexpected message sends you into a refund procedure you did not request.<\/li>\n<li>The page appears to confirm a tax credit before independently verifying your account.<\/li>\n<li>It collects a detailed identity and contact profile.<\/li>\n<li>Receiving money supposedly requires full card credentials, including the security code.<\/li>\n<\/ul>\n<p>The image illustrates the card-collection stage using a nonfunctional example address. It is not an original capture of a taxpayer&#8217;s account.<\/p>\n<div id=\"mwtad4207778535\" class=\"gas_fallback-ad_381404-ad_309685-placement_406670\" style=\"margin-top: 50px;margin-right: 10px;margin-bottom: 50px;margin-left: 10px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"8735619847\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div><p>The \u20ac95 figure belongs to the documented sample. A different amount does not make a similar approach safe, and this investigation establishes no universal debit amount.<\/p>\n<div id=\"mwtad1815452207\" class=\"gas_fallback-ad_309747-ad_309685-placement_406661\" style=\"margin-top: 30px;margin-bottom: 30px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"9589536513\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div><h2>Why a Small Tax Refund Is Such Effective Bait<\/h2>\n<p>A modest reimbursement feels believable. It does not require you to believe you won a competition or that a stranger wants to give away a fortune.<\/p>\n<p>Taxes also produce real adjustments. Someone who has moved, paid installments, or handled household bills may not remember every transaction well enough to reject the message immediately.<\/p>\n<p>The scam borrows that uncertainty. It offers to resolve a financial detail for you, then makes an unfamiliar website the place where you must supply the answer.<\/p>\n<p>A payment-platform logo is particularly persuasive because it belongs near money. But a logo can be copied into a page without connecting that page to the platform.<\/p>\n<p>Likewise, knowing the correct tax name does not prove access to your municipal record. Public terminology lets a mass campaign sound tailored to a local obligation.<\/p>\n<p>The safest response is not to argue with the email. Compare the claim with your actual receipts and the account information available through the relevant authority.<\/p>\n<div id=\"mwtad2478413147\" class=\"gas_fallback-ad_309748-ad_309685-placement_406662\" style=\"margin-top: 30px;margin-bottom: 30px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"3906789406\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div><h2>How the PagoPA TARI Refund Scam Works<\/h2>\n<h3>Step 1: An email offers to return an apparent overpayment<\/h3>\n<p>CERT&#8217;s <a href=\"https:\/\/cert-agid.gov.it\/wp-content\/uploads\/2026\/09\/phishing_PagoPA_TARI_03-09-2026.json\" target=\"_blank\" rel=\"noopener\">campaign indicators<\/a> identify email as a delivery channel. The lure takes the reader toward a website dressed as a refund service.<\/p>\n<p>You may be curious even if you do not recognize the sender. Receiving money seems less dangerous than sending it, which is precisely the assumption to challenge.<\/p>\n<p>A form can steal useful information without charging you immediately. The absence of an obvious purchase button does not make the destination harmless.<\/p>\n<p>Do not forward the original link to relatives as something to try. If you want to warn someone, explain the pretext without encouraging another visit.<\/p>\n<h3>Step 2: The portal makes the refund look like an existing case<\/h3>\n<p>The fake case number gives the page an administrative feel. A continuation button turns the offer into a task that appears ready to finish.<\/p>\n<p>In the recorded sample, the story referenced TARI for 2025 and an alleged excess payment dated August 28, 2026. Those dates were part of the claim.<\/p>\n<p>Dates can make a story specific without making it true. Compare them against your records rather than treating specificity as evidence that the sender knows your account.<\/p>\n<p>A genuine receipt stored independently carries more weight than a case number created by the same website requesting your information.<\/p>\n<h3>Step 3: An identity prompt becomes an apparent eligibility check<\/h3>\n<p>The documented flow asked for a tax identifier or identity-card number before displaying its refund result. That sequence can make the outcome feel personalized.<\/p>\n<p>Yet a page can show the same favorable result after many different entries. A response appearing after you type is not proof of a genuine database lookup.<\/p>\n<p>Do not experiment using your own tax code to see what happens. Testing with real information crosses the very boundary you are trying to evaluate.<\/p>\n<p>Even when you stop before the final screen, note what you entered. Early-stage personal information can still matter if it was transmitted.<\/p>\n<h3>Step 4: Contact details connect the identity to a reachable person<\/h3>\n<p>The next requests assemble a broader profile. Names and addresses identify someone; email and telephone details provide ways to approach that person again.<\/p>\n<p>That combination can make a later message unusually convincing. A caller may refer to the alleged refund and details that you remember entering yourself.<\/p>\n<p>This does not authenticate the caller. It can simply mean the information supplied during one encounter is being used to support another.<\/p>\n<p>Keep the original message and the timing of your response. They help explain why a later contact may be connected to this disclosure.<\/p>\n<h3>Step 5: The refund becomes a request for card credentials<\/h3>\n<p>At the payment stage, the site asks for information that can support card misuse. A small promised credit is being exchanged for access to much more valuable data.<\/p>\n<p>A CVV is a card security code, not a tax reference. Describing it as necessary to complete a reimbursement does not change its sensitivity.<\/p>\n<p>No verified OTP, remote-access installation, or specific unauthorized charge was established for this sample. Those possibilities should not be invented to make the story sound worse.<\/p>\n<p>The demonstrated collection is already enough to reject the page. You do not need to wait for a second demand or a successful fraudulent transaction.<\/p>\n<div id=\"mwtad4159586127\" class=\"gas_fallback-ad_318930-ad_309685-placement_406663\" style=\"margin-top: 30px;margin-bottom: 30px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"3818335085\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div><h2>Check the Refund Without Using the Refund Link<\/h2>\n<p>Start with the municipality or collecting authority named on your genuine TARI paperwork. Use its established website or contact information from a receipt you already have.<\/p>\n<p>Ask whether your account actually shows an overpayment and what its reimbursement procedure requires. Do not let the questionable email choose the contact details for this check.<\/p>\n<p>The real <a href=\"https:\/\/www.pagopa.gov.it\/\" target=\"_blank\" rel=\"noopener\">PagoPA website<\/a> provides a route to its assistance resources. Reach that service separately if you need help identifying a payment.<\/p>\n<p>Have your existing receipt ready, but share it only through an appropriate official channel. Redact unrelated transactions if a supporting document includes more than the disputed payment.<\/p>\n<p>Distinguish a payment question from a refund entitlement. A platform can help explain transaction handling without being the authority that decides whether your tax calculation was correct.<\/p>\n<p>Do not assume every refund involving public payments is impossible. That blanket rule can confuse readers who genuinely need an adjustment. The unauthorized collection page is the problem.<\/p>\n<p>If you find a legitimate credit, arrange its return through the verified authority. The existence of real money owed does not validate an unrelated email link.<\/p>\n<h2>What the Website Address Can and Cannot Tell You<\/h2>\n<p>The documented indicators included rimborso.intbc[.]cc and several other hostnames. We list the example defensively, not as a destination to open.<\/p>\n<p>An Italian word such as \u201crimborso\u201d makes an address readable. It does not connect the domain to PagoPA, your municipality, or a legitimate payment processor.<\/p>\n<p>A lock symbol does not answer that question either. An encrypted connection can still deliver information directly to a criminal&#8217;s website.<\/p>\n<p>At the same time, unfamiliarity alone is not a complete fraud test. Real public services can use payment partners, so the relationship must be verified independently.<\/p>\n<p>For this campaign, the conclusion rests on CERT&#8217;s investigation of the impersonation and collection process, not simply on disliking a domain suffix.<\/p>\n<p>The sampled page did not produce a usable current capture through our isolated service. That limits live visual evidence, not the official historical finding.<\/p>\n<h2>What to Do if You Have Fallen Victim to This Scam<\/h2>\n<ol>\n<li>\n<p><strong>If you entered card information, contact the issuer now.<\/strong> Explain that the full details were supplied to a false public-tax refund page.<\/p>\n<p>Ask whether the card should be blocked and replaced. Review both completed and pending transactions, and follow the bank&#8217;s instructions for reporting anything unauthorized.<\/p>\n<p>Do not wait for exactly \u20ac95 to appear. That amount was the promised refund, not an established limit on what someone might attempt with the card.<\/p>\n<\/li>\n<li>\n<p><strong>Tell the bank about any additional approvals.<\/strong> If you also supplied a one-time code or approved something in its app, describe that separately.<\/p>\n<p>Read the actual transaction description to the bank. Your intention to receive a refund may differ from the operation the approval authorized.<\/p>\n<p>No legitimate response requires you to continue chatting with the suspected sender while the bank investigates. End that contact and keep relevant messages.<\/p>\n<\/li>\n<li>\n<p><strong>Make an evidence folder before discarding the email.<\/strong> Save the sender details, original message, visible address, dates, and screenshots already in your possession.<\/p>\n<p>Write down which fields you completed. Do not add full card credentials or security codes to a general incident note that others may read.<\/p>\n<p>A useful record distinguishes information entered from transactions observed. That precision helps the bank and authorities assess what actually needs attention.<\/p>\n<\/li>\n<li>\n<p><strong>Check the genuine tax account separately.<\/strong> Contact the relevant municipal office to confirm whether any legitimate issue remains outstanding.<\/p>\n<p>Discovering a scam does not automatically cancel a real tax obligation. Conversely, paying genuine TARI does not mean you must cooperate with an unsolicited reimbursement request.<\/p>\n<p>Use the official procedure for any real adjustment. Never send another identity document to the fake portal merely because its operator says your claim is incomplete.<\/p>\n<\/li>\n<li>\n<p><strong>Report the impersonation through official channels.<\/strong> Use the assistance and security information reached from PagoPA&#8217;s genuine website, and report financial loss to police.<\/p>\n<p>Provide the suspicious address as evidence rather than encouraging the recipient to complete the form. Keep private records out of public comment sections.<\/p>\n<p>If your email service offers a phishing-report option, use it after retaining the evidence you need. Blocking one sender alone may not stop related messages.<\/p>\n<\/li>\n<li>\n<p><strong>Protect other information you supplied.<\/strong> A disclosed address or tax identifier calls for attention to unexpected account, contract, or verification correspondence.<\/p>\n<p>If you reused a password on the page, replace it through the genuine affected service. Do not follow a password-reset link supplied by the same sender.<\/p>\n<p>Reject unsolicited refund-recovery offers. A person who promises to retrieve the credit for an upfront fee may be attempting a second deception.<\/p>\n<\/li>\n<li>\n<p><strong>Handle browser or software changes if they occurred.<\/strong> A card-phishing form is not, by itself, proof of a malware infection.<\/p>\n<p>Malwarebytes can help check a device if you downloaded suspicious material or installed software during the encounter. AdGuard may reduce some malicious-ad and unwanted browsing exposure.<\/p>\n<p>These tools cannot reverse a card disclosure or approve a tax refund. Bank action and independent verification remain the priorities for this particular scam.<\/p>\n<\/li>\n<\/ol>\n<h2>A Useful Way to Explain This to Someone Else<\/h2>\n<p>Instead of saying \u201cnever trust tax emails,\u201d explain the specific switch: a message offers money, but the linked page collects credentials that can be used against you.<\/p>\n<p>That explanation leaves room for legitimate administration. It also gives someone a concrete next step: check their own records and contact the proper office independently.<\/p>\n<p>If a relative has already entered details, avoid spending the first conversation debating whether the page looked convincing. Help them reach their card issuer first.<\/p>\n<p>You can work through the timeline afterward. The immediate goal is to reduce further exposure while preserving enough evidence to understand what happened.<\/p>\n<h2>Frequently Asked Questions<\/h2>\n<h3>Is PagoPA itself a scam?<\/h3>\n<p>No. The reported fraud impersonates the legitimate platform. The accusation concerns counterfeit refund pages, not ordinary public payments processed through the real service.<\/p>\n<h3>Was the \u20ac95 TARI refund independently confirmed?<\/h3>\n<p>It was confirmed as the lure displayed by a fraudulent page, not as money owed to the recipient. Verify any actual credit with the responsible authority.<\/p>\n<h3>Does a case number prove the municipality checked my payment?<\/h3>\n<p>No. A fabricated website can display a convincing reference. Compare the claim with official records obtained through a route you chose independently.<\/p>\n<h3>What if I entered my tax code but stopped before the card screen?<\/h3>\n<p>Stop there and document the disclosure. Watch for targeted follow-up messages, but do not assume a card was compromised if you never supplied its details.<\/p>\n<h3>Should I wait to see whether the refund arrives?<\/h3>\n<p>Not after entering card credentials on the false page. Contact the issuer promptly; waiting for a promised credit does nothing to protect exposed details.<\/p>\n<h3>Can a real TARI overpayment still exist?<\/h3>\n<p>Yes. A genuine adjustment and a fake message can coexist. Resolve the real issue through the relevant authority, without using the suspicious collection form.<\/p>\n<h2>The Bottom Line<\/h2>\n<p>The PagoPA TARI refund scam uses a believable reimbursement to collect valuable identity and card information. A precise amount and a case number do not make it official.<\/p>\n<p>Check the tax record independently. If the form already received your card details, speak to the issuer before doing anything else with the message.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>A refund notice says you paid too much waste tax. The page has a familiar payment logo, a case number, and money apparently waiting for you. The PagoPA TARI refund scam starts with that welcome &#8230; <\/p>\n<p class=\"read-more-container\"><a title=\"PagoPA TARI Refund Scam: The Fake \u20ac95 Credit That Collects Card Details\" class=\"read-more button\" href=\"https:\/\/malwaretips.com\/blogs\/pagopa-tari-refund-card-details-scam\/#more-425668\" aria-label=\"Read more about PagoPA TARI Refund Scam: The Fake \u20ac95 Credit That Collects Card Details\">Read more<\/a><\/p>\n","protected":false},"author":51,"featured_media":425669,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[49],"tags":[],"class_list":["post-425668","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-scam-reports","masonry-post","generate-columns","tablet-grid-50","mobile-grid-100","grid-parent","grid-50","resize-featured-image"],"_links":{"self":[{"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/posts\/425668","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/users\/51"}],"replies":[{"embeddable":true,"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/comments?post=425668"}],"version-history":[{"count":1,"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/posts\/425668\/revisions"}],"predecessor-version":[{"id":425670,"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/posts\/425668\/revisions\/425670"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/media\/425669"}],"wp:attachment":[{"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/media?parent=425668"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/categories?post=425668"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/tags?post=425668"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}