216.73.216.133

Global operation disrupts Lumma Stealer

· Published 26/05/2025 09:12 · Modified 26/05/2025 09:49

Export JSON

Essential information

Published
26/05/2025 09:12
Modified
26/05/2025 09:49
Tags
2025-05-26 c&c infrastructure credential-theft disruption infostealer lumma stealer malware-as-a-service
Related entities
113 observables, 1 intrusion sets (apt), 1 malware, 3 others

Description

ESET collaborated with Microsoft and other partners in a global operation to disrupt , a prominent . ESET's contribution involved analyzing tens of thousands of malware samples to extract key data like C&C servers and affiliate identifiers. The operation targeted 's infrastructure, aiming to render its exfiltration network nonoperational. had been actively developed and maintained by its operators, with regular updates to its code and network infrastructure. It employed various anti-analysis techniques and targeted a wide range of data, including credentials from browsers, cryptocurrency wallets, and other applications.

External references