216.73.216.36

LummaC2 Malware and Malicious Chrome Extension Delivered

· Published 09/09/2024 09:34 · Modified 09/09/2024 09:52

Export JSON

Essential information

Published
09/09/2024 09:34
Modified
09/09/2024 09:52
Tags
2024-09-09 browser control credentials crypto extension lummac2 malware remote stealer
Related entities
7 observables, 1 techniques (mitre), 1 malware

Description

In August 2024, eSentire's Threat Response Unit observed a sophisticated attack involving and a malicious Google Chrome . The attack leveraged DLL side-loading to execute a loader delivering the and a PowerShell script that installed the . The manipulated activities, stole data like and wallets, and enabled of infected systems. The infection chain showcased evasive tactics and the ability to dynamically alter web content, highlighting the importance of robust endpoint security, security awareness training, and secure software configurations.

External references