{"id":426580,"date":"2026-10-11T07:04:27","date_gmt":"2026-10-11T07:04:27","guid":{"rendered":"https:\/\/malwaretips.com\/blogs\/?p=426580"},"modified":"2026-10-11T07:04:27","modified_gmt":"2026-10-11T07:04:27","slug":"iras-tax-refund-payout-email-card-phishing-scam","status":"publish","type":"post","link":"https:\/\/malwaretips.com\/blogs\/iras-tax-refund-payout-email-card-phishing-scam\/","title":{"rendered":"IRAS Tax Refund Scam: The Fake Payout Email That Wants Your Card Details"},"content":{"rendered":"<p>An email says IRAS has found an overcharge and your refund is ready. A reference number and a portal link make it look like routine tax correspondence.<\/p><div id=\"mwtad143596447\" class=\"gas_fallback-ad_309684--placement_406659\" style=\"margin-top: 50px;margin-right: 10px;margin-bottom: 50px;margin-left: 10px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"3957935887\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div>\n<p>If an IRAS tax refund scam has reached your inbox, there&#8217;s a safer way to check the promised payout before following its instructions.<\/p>\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"1536\" height=\"1024\" src=\"https:\/\/malwaretips.com\/blogs\/wp-content\/uploads\/2026\/10\/iras-tax-refund-payout-email-card-phishing-scam-illustration.png\" class=\"wp-image-426581\" alt=\"Illustrative tax refund email promising S$650 through a fictional claim link\" title=\"\" srcset=\"https:\/\/malwaretips.com\/blogs\/wp-content\/uploads\/2026\/10\/iras-tax-refund-payout-email-card-phishing-scam-illustration.png 1536w, https:\/\/malwaretips.com\/blogs\/wp-content\/uploads\/2026\/10\/iras-tax-refund-payout-email-card-phishing-scam-illustration-300x200.png 300w, https:\/\/malwaretips.com\/blogs\/wp-content\/uploads\/2026\/10\/iras-tax-refund-payout-email-card-phishing-scam-illustration-1024x683.png 1024w\" sizes=\"auto, (max-width: 1536px) 100vw, 1536px\" \/><\/figure>\n<div id=\"mwtad2262572817\" class=\"gas_fallback-ad_309746-ad_309685-placement_406660\" style=\"margin-top: 30px;margin-bottom: 30px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"4456629336\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div><h2>Overview<\/h2>\n<h3>A refund promise that borrows IRAS&#8217;s identity<\/h3>\n<p>These messages impersonate Singapore&#8217;s Inland Revenue Authority. IRAS is the real tax agency; the fraudulent refund emails are not an offer from that agency.<\/p><div id=\"mwtad2548883372\" class=\"gas_fallback-ad_381396-ad_309685-placement_406667\" style=\"margin-top: 50px;margin-bottom: 50px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"1471373341\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div>\n<p>The hook is an apparent windfall from a previous overcharge. Instead of demanding an alarming tax payment, the sender gives you a reason to expect money.<\/p>\n<p>IRAS&#8217;s <a href=\"https:\/\/www.iras.gov.sg\/news-events\/announcements\/scam-advisory\/tax-refund-scam\" target=\"_blank\" rel=\"noopener\">official refund and payout scam advisory<\/a> confirms this impersonation. Its examples include a message promising S$650 and other amounts that change between variants.<\/p>\n<p>A precise amount can make the email feel personal. It still doesn&#8217;t establish that the sender accessed your tax account or that the refund exists.<\/p><div id=\"mwtad1591555616\" class=\"gas_fallback-ad_309686-ad_309685-placement_406668\" style=\"margin-top: 50px;margin-right: 10px;margin-bottom: 50px;margin-left: 10px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"6935453015\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div>\n<p>The illustration above recreates the general refund lure with fictional contact details. It isn&#8217;t a genuine IRAS notice or evidence of your entitlement.<\/p>\n<h3>The card payout request exposes the deception<\/h3>\n<p>The fraudulent link leads to a copied tax website. There, the recipient is asked to choose a debit or credit card as the refund method.<\/p>\n<p>IRAS doesn&#8217;t pay tax refunds to cards. A form asking for that payout method is taking you outside the agency&#8217;s genuine process.<\/p><div id=\"mwtad862951330\" class=\"gas_fallback-ad_381401-ad_309685-placement_406669\" style=\"margin-top: 50px;margin-right: 10px;margin-bottom: 50px;margin-left: 10px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"5315249587\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div>\n<p>Genuine refunds are automatically credited through registered bank or PayNow accounts. You can review your own refund position through myTax Portal.<\/p>\n<p>This isn&#8217;t just an inconvenient billing policy or a slow refund. It is a confirmed attempt to collect information by pretending to be the tax authority.<\/p>\n<h3>The signs that matter more than the email&#8217;s appearance<\/h3>\n<ul>\n<li>The message announces a refund amount and tells you to claim it through an unsolicited link.<\/li>\n<li>The destination asks for a card as the way to receive your tax payout.<\/li>\n<li>Official-looking link text doesn&#8217;t match where the link actually leads.<\/li>\n<li>The form asks for banking secrets or verification codes to complete the supposed refund.<\/li>\n<li>The promised credit can&#8217;t be confirmed independently inside your real tax account.<\/li>\n<\/ul>\n<div id=\"mwtad2486582490\" class=\"gas_fallback-ad_381404-ad_309685-placement_406670\" style=\"margin-top: 50px;margin-right: 10px;margin-bottom: 50px;margin-left: 10px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"8735619847\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div><p>Don&#8217;t try to settle the question by comparing logos. Go to the agency&#8217;s genuine website yourself and check the account information you can actually verify.<\/p>\n<p>A real refund and a fraudulent email can coexist. Having money owed to you doesn&#8217;t make a particular claim link trustworthy.<\/p>\n<div id=\"mwtad3717841659\" class=\"gas_fallback-ad_309747-ad_309685-placement_406661\" style=\"margin-top: 30px;margin-bottom: 30px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"9589536513\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div><h2>How a Genuine IRAS Refund Differs<\/h2>\n<p>The strongest check is the refund process, not a tiny spelling mistake. A page can have polished English and still ask for the wrong kind of information.<\/p>\n<p>IRAS directs taxpayers to their secure portal for confidential tax information. The agency says it doesn&#8217;t send emails announcing your tax refund amount.<\/p>\n<p>Navigate independently to <a href=\"https:\/\/mytax.iras.gov.sg\/\" target=\"_blank\" rel=\"noopener\">myTax Portal<\/a>. Don&#8217;t use a portal address copied from the suspicious email as your starting point.<\/p>\n<p>If your genuine account shows a refund, follow the instructions within that verified service. An unrelated card form isn&#8217;t required just because the email says otherwise.<\/p>\n<p>You might legitimately need to maintain account details for payments. Make those changes through the authenticated agency process, not through a surprise message.<\/p>\n<p>Also distinguish receiving money from authorizing money to leave. A bank notification describing a purchase, transfer, or new device isn&#8217;t merely confirming a tax credit.<\/p>\n<p>Read what an approval actually says before acting. The amount printed on the refund page isn&#8217;t a reliable description of the operation your bank is approving.<\/p>\n<p>If the portal and the message disagree, ask IRAS through contact details reached from its official website. Don&#8217;t ask the sender to validate its own claim.<\/p>\n<div id=\"mwtad627752792\" class=\"gas_fallback-ad_309748-ad_309685-placement_406662\" style=\"margin-top: 30px;margin-bottom: 30px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"3906789406\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div><h2>How the IRAS Tax Refund Scam Works<\/h2>\n<h3>Step 1: The email creates a believable reason to claim money<\/h3>\n<p>The message says a review found an overcharge, a refund has been approved, or a payout needs confirmation. Its tone resembles ordinary administrative correspondence.<\/p>\n<p>A tax reference gives the reader something concrete to focus on. The invitation to review details seems less risky than an obvious request to send money.<\/p>\n<p>You may think you are correcting a record rather than making a purchase. That expectation makes a linked form feel like part of the refund process.<\/p>\n<p>The scam doesn&#8217;t need an authentic tax calculation. It needs the recipient to accept the story long enough to move from the inbox to its page.<\/p>\n<h3>Step 2: A convincing link moves you away from the genuine portal<\/h3>\n<p>The visible link may contain an official-looking tax address. The underlying destination can be something entirely different, including an intermediary that redirects again.<\/p>\n<p>In the agency&#8217;s S$650 example, the displayed portal-style text conceals a different destination. The appearance of the text isn&#8217;t proof of who controls the page.<\/p>\n<p>On a computer, inspecting a link without clicking can help reveal a mismatch. On a phone, preview behavior varies, so independent navigation is usually simpler.<\/p>\n<p>Don&#8217;t open the link merely to inspect it more closely. You already have a safer route to check the claim through the real agency.<\/p>\n<h3>Step 3: The copied page asks how you want the refund paid<\/h3>\n<p>The page presents debit or credit card choices as a convenience. This is the point where a reassuring refund story becomes a request for valuable financial data.<\/p>\n<p>A card number, expiration date, and security code aren&#8217;t harmless administrative details. Entering them into an impostor&#8217;s form exposes a payment instrument.<\/p>\n<p>A copied heading or tax logo doesn&#8217;t change that. The fake page is asking you to use a payout method that IRAS specifically rules out.<\/p>\n<p>Leave the form without completing it. If you already typed information, don&#8217;t assume it remained private because you stopped before the last screen.<\/p>\n<h3>Step 4: Further verification can increase the exposure<\/h3>\n<p>Some versions request banking information or codes. What matters is the operation behind the request, not the label \u201cverification\u201d placed beside it.<\/p>\n<p>Never send a banking code to an email contact or enter it into an unverified tax form. Contact your bank if you&#8217;ve already done that.<\/p>\n<p>A follow-up request to correct an error can be another attempt to keep you engaged. Don&#8217;t provide a second card to make the promised credit appear.<\/p>\n<p>IRAS also warns that some links can deliver malicious software. That possibility calls for checking downloads and installations, not assuming every clicked email infected the device.<\/p>\n<h3>Step 5: The victim waits for a credit while the account needs attention<\/h3>\n<p>The refund promise can keep someone waiting after submitting details. They may check for the incoming amount while overlooking small or unfamiliar outgoing transactions.<\/p>\n<p>If card or banking information was shared, review both pending and posted activity. Tell the bank about the phishing exposure even if no charge appears yet.<\/p>\n<p>Don&#8217;t rely on the fake page&#8217;s confirmation screen. A successful-looking submission can be displayed without any connection to IRAS or an actual refund.<\/p>\n<p>The useful next step is containment, not chasing the promised money. Save the evidence, secure the affected accounts, and verify any real tax credit separately.<\/p>\n<div id=\"mwtad1254715513\" class=\"gas_fallback-ad_318930-ad_309685-placement_406663\" style=\"margin-top: 30px;margin-bottom: 30px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"3818335085\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div><h2>Sender Names, Domains, and Reference Numbers<\/h2>\n<p>A sender display name is just the name your email app shows. Seeing IRAS there doesn&#8217;t establish that the agency sent the message.<\/p>\n<p>The actual address may reveal an unrelated domain. Even a plausible address should be considered alongside the requested action and the independent portal check.<\/p>\n<p>IRAS says legitimate email addresses use its iras.gov.sg domain. Don&#8217;t treat a copied visible sender string as the only authentication test.<\/p>\n<p>Official words can appear anywhere in a deceptive web address. The presence of \u201ctax\u201d or \u201cIRAS\u201d doesn&#8217;t make a separate domain part of the agency.<\/p>\n<p>HTTPS protects a connection to the site you opened. It doesn&#8217;t prove that the operator is the tax authority or that a refund form is legitimate.<\/p>\n<p>A reference number can be invented just as easily as a heading. Compare it with information obtained through the genuine service, not another page linked in the email.<\/p>\n<p>Keep screenshots of these details if you report the attempt. Don&#8217;t post your genuine tax identifier, financial records, or security codes in a public warning.<\/p>\n<p>When discussing the scam with family, focus on the card-payout mismatch. It&#8217;s a more useful test than asking them to memorize every possible fake domain.<\/p>\n<h2>What to Do if You Have Fallen Victim to This Scam<\/h2>\n<ol>\n<li>\n<p><strong>Leave the refund conversation.<\/strong> Stop filling out the page and don&#8217;t answer follow-up requests. Use the genuine IRAS portal to check whether any refund is due.<\/p>\n<p>If you only read the email, preserve enough information to report it and then remove it. Reading a refund promise doesn&#8217;t mean your card was exposed.<\/p>\n<\/li>\n<li>\n<p><strong>Tell the card issuer exactly what you entered.<\/strong> Use the bank&#8217;s official app or the contact printed on your card, not a number supplied by the email.<\/p>\n<p>Explain whether you gave the full card details, banking credentials, a code, or an approval. Ask which protections, card replacement, or transaction checks are needed.<\/p>\n<\/li>\n<li>\n<p><strong>Review activity without waiting for the refund.<\/strong> Check pending charges, transfers, and unfamiliar account changes. Record amounts and times rather than relying only on merchant names.<\/p>\n<p>Ask your bank how to dispute unauthorized activity and whether anything can still be stopped. A refund decision depends on the circumstances, so don&#8217;t assume reimbursement.<\/p>\n<\/li>\n<li>\n<p><strong>Secure any exposed login.<\/strong> Change a shared password through the real service on a trusted device. If you reused it elsewhere, protect those accounts too.<\/p>\n<p>Review available session and security settings. If Singpass information or approvals were involved, contact Singpass through its genuine service and inspect suspicious login alerts.<\/p>\n<\/li>\n<li>\n<p><strong>Check what the link left behind.<\/strong> Look for unexpected downloads, installed applications, browser extensions, or notification permissions. Don&#8217;t open a downloaded file to determine whether it&#8217;s suspicious.<\/p>\n<p>If you installed or ran something, use a safe device for banking while the affected one is assessed. A qualified technician can help contain a suspected compromise.<\/p>\n<p><a href=\"https:\/\/malwaretips.com\/get\/malwarebytes-free\" target=\"_blank\" rel=\"noopener sponsored\" data-google-vignette=\"false\">Malwarebytes<\/a> is a useful option for checking a device after risky software exposure. It can&#8217;t withdraw information from a phishing form or undo a bank approval.<\/p>\n<\/li>\n<li>\n<p><strong>Keep a concise record and report.<\/strong> Save the email, destination, screenshots, and bank reference numbers. Report the impersonation through IRAS&#8217;s official contacts and your email provider.<\/p>\n<p>In Singapore, the ScamShield helpline is 1799. If money was taken, make a police report and provide the bank with the corresponding reference.<\/p>\n<\/li>\n<li>\n<p><strong>Expect another attempt to recover your trust.<\/strong> A caller may repeat the refund amount or your personal details. Knowing them doesn&#8217;t authenticate the caller.<\/p>\n<p>Don&#8217;t pay an agent to unlock the refund or recover stolen money. Keep discussions with the actual agency and bank on independently verified channels.<\/p>\n<p><a href=\"https:\/\/malwaretips.com\/get\/adguard\" target=\"_blank\" rel=\"noopener sponsored\" data-google-vignette=\"false\">AdGuard<\/a> can supplement browser filtering against some malicious destinations. It doesn&#8217;t decide your tax entitlement or authenticate every email that claims a payout.<\/p>\n<\/li>\n<\/ol>\n<h2>Protecting Future Tax Correspondence Without Ignoring Real Notices<\/h2>\n<p>You don&#8217;t need to stop using online tax services. The goal is to avoid letting an unsolicited message choose where you log in or provide financial information.<\/p>\n<p>Keep a bookmark for the genuine tax portal after verifying it independently. Use it when an email claims that your account needs attention.<\/p>\n<p>Maintain your contact details within the real services you use. Security alerts can help you spot access that you didn&#8217;t initiate.<\/p>\n<p>For households, agree that refund emails won&#8217;t be completed while multitasking. Taking a minute to open the genuine portal is easier than repairing several compromised accounts.<\/p>\n<p>A family member helping with taxes should receive relevant documents through an agreed channel. Forwarding a claim link without context can make it appear preapproved.<\/p>\n<p>Email spam and phishing filters add another barrier. Keep them enabled, but don&#8217;t assume a message is safe simply because it reached your inbox.<\/p>\n<p>When a real notice needs attention, act through the real agency. Rejecting the fake card form doesn&#8217;t mean ignoring an actual tax obligation or missing legitimate support.<\/p>\n<p>The same distinction helps when someone insists the link is necessary. Ask for information you can verify inside your account rather than agreeing to another untrusted form.<\/p>\n<p>If you manage company tax correspondence, tell colleagues about the refund route. A convincing administrative email should not bypass your existing financial-information controls.<\/p>\n<p>Record who is allowed to update payout details and how changes are confirmed. That keeps a believable email from becoming an unofficial way to alter financial instructions.<\/p>\n<p>After a reported incident, review the process without blaming the recipient. A clear response route makes the next employee more likely to ask for help promptly.<\/p>\n<h2>Frequently Asked Questions<\/h2>\n<h3>Is an email promising an IRAS card refund genuine?<\/h3>\n<p>No. IRAS explicitly says it doesn&#8217;t process tax refunds to debit or credit cards. Check the refund through your actual tax account instead.<\/p>\n<h3>What if I&#8217;m genuinely expecting a tax refund?<\/h3>\n<p>You can still receive a scam email. Confirm the amount and status within myTax Portal; don&#8217;t let your expectation authenticate a separate claim link.<\/p>\n<h3>Does the S$650 amount identify every version?<\/h3>\n<p>No. It&#8217;s one published example. Amounts, references, subjects, and destinations can change while the false payout and information request remain the same.<\/p>\n<h3>Is a portal-looking link enough to trust the email?<\/h3>\n<p>No. Visible link text can conceal another destination. Open the genuine agency website independently rather than using an unsolicited refund button.<\/p>\n<h3>Should I cancel my card after merely reading the message?<\/h3>\n<p>Reading alone doesn&#8217;t expose card details. If you entered financial data or authorized anything, contact the issuer and let it assess the needed protections.<\/p>\n<h3>What if the page says my refund is being processed?<\/h3>\n<p>That confirmation doesn&#8217;t establish a real payout. Stop interacting, check the genuine portal, and protect any card or account information already supplied.<\/p>\n<h2>The Bottom Line<\/h2>\n<p>Don&#8217;t enter card details to claim an IRAS refund from an unsolicited email. The request contradicts the agency&#8217;s genuine payout process.<\/p>\n<p>Check myTax Portal through an independently opened address. If you&#8217;ve already shared information or approved an operation, contact your bank immediately and secure the affected accounts.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>An email says IRAS has found an overcharge and your refund is ready. A reference number and a portal link make it look like routine tax correspondence. If an IRAS tax refund scam has reached &#8230; <\/p>\n<p class=\"read-more-container\"><a title=\"IRAS Tax Refund Scam: The Fake Payout Email That Wants Your Card Details\" class=\"read-more button\" href=\"https:\/\/malwaretips.com\/blogs\/iras-tax-refund-payout-email-card-phishing-scam\/#more-426580\" aria-label=\"Read more about IRAS Tax Refund Scam: The Fake Payout Email That Wants Your Card Details\">Read more<\/a><\/p>\n","protected":false},"author":51,"featured_media":426581,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[49],"tags":[],"class_list":["post-426580","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-scam-reports","masonry-post","generate-columns","tablet-grid-50","mobile-grid-100","grid-parent","grid-50","resize-featured-image"],"_links":{"self":[{"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/posts\/426580","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/users\/51"}],"replies":[{"embeddable":true,"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/comments?post=426580"}],"version-history":[{"count":3,"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/posts\/426580\/revisions"}],"predecessor-version":[{"id":426727,"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/posts\/426580\/revisions\/426727"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/media\/426581"}],"wp:attachment":[{"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/media?parent=426580"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/categories?post=426580"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/tags?post=426580"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}