Close Menu
Xarkas BlogXarkas Blog
    What's Hot

    Motorola Edge 70 Pro Launching in India Today via Flipkart: Check Specifications & Expected Price Range

    April 25, 2026

    OPPO Find X9s Launched Globally with MediaTek Dimensity 9500s SoC: Check Price, Specifications, Features

    April 25, 2026

    OPPO Find X9s Pro Compact Flagship Launched with MediaTek Dimensity 9500 SoC, 200MP Cameras, 7025mAh Battery

    April 25, 2026
    Facebook X (Twitter) Instagram
    Xarkas BlogXarkas Blog
    • Tech News

      Hummer EV Price in India 2026: Complete Guide, Features, Specifications & Availability

      April 2, 2026

      Apple Vision Pro vs Meta Quest 3: The Ultimate VR Headset Showdown

      December 3, 2025

      ChatGPT told them they were special — their families say it led to tragedy

      November 24, 2025

      Beehiiv’s CEO isn’t worried about newsletter saturation

      November 24, 2025

      TechCrunch Mobility: Searching for the robotaxi tipping point

      November 24, 2025
    • Mobiles

      Motorola Edge 70 Pro Launching in India Today via Flipkart: Check Specifications & Expected Price Range

      April 25, 2026

      OPPO Find X9s Launched Globally with MediaTek Dimensity 9500s SoC: Check Price, Specifications, Features

      April 25, 2026

      OPPO Find X9s Pro Compact Flagship Launched with MediaTek Dimensity 9500 SoC, 200MP Cameras, 7025mAh Battery

      April 25, 2026

      OnePlus Nord CE 6 Full Specifications Confirmed Ahead of Launch in India on May 7: What to Expect

      April 24, 2026

      iQOO Phone With Dimensity 9500 And 8,000mAh Battery Tipped To Launch; May Be Part Of iQOO 15 Series

      April 24, 2026
    • Gaming

      AI Dungeon maker Latitude unveils Voyage, a platform for creating AI-powered RPGs

      April 22, 2026

      Roblox’s AI assistant gets new agentic tools to plan, build, and test games

      April 17, 2026

      How the rewards app Freecash scammed its way to the top of the app stores

      April 15, 2026

      Where Baldur’s Gate 3 Gets Player Agency vs. Narrative Control Right (and Wrong)

      April 14, 2026

      Best Fallout 4 Romance Mods

      April 14, 2026
    • SEO Tips
    • PC/ Laptops

      Dell Pro 14 (AMD Ryzen AI 7 Pro 350) Review: The Sensible Choice for Everyday Office Work

      January 9, 2026

      CES 2026: MSI Unveils New Prestige, Raider, Stealth and Crosshair Laptops with Intel Core Ultra SoCs

      January 7, 2026

      CES 2026: Samsung Unveils New Galaxy Book6 Laptops

      January 6, 2026

      CES 2026: HP Shows a Keyboard-Based PC and New EliteBooks

      January 6, 2026

      CES 2026: Intel Unveils Core Ultra Series 3, Its First Platform Built on 18A

      January 6, 2026
    • EV

      Hummer EV Price in India 2026: Complete Guide, Features, Specifications & Availability

      April 2, 2026

      Here’s How Much It Costs

      November 15, 2025

      Sodium-Ion Batteries Have Landed In America. The Hard Part Starts Now

      November 15, 2025

      Mazda Begins Testing Its Long-Overdue U.S. EV

      November 14, 2025

      Volkswagen Adds Smartwatch Support For U.S. Vehicles

      November 14, 2025
    • Gadget
    • AI
    Facebook
    Xarkas BlogXarkas Blog
    Home - Featured - Lumma Stealer Malware Being Spread to Windows Devices via Fake Human Verification Pages, CloudSEK Says
    Featured

    Lumma Stealer Malware Being Spread to Windows Devices via Fake Human Verification Pages, CloudSEK Says

    KavishBy KavishSeptember 19, 2024No Comments3 Mins Read
    Facebook Twitter Pinterest Telegram LinkedIn Tumblr WhatsApp Email
    Lumma Stealer Malware Being Spread to Windows Devices via Fake Human Verification Pages, CloudSEK Says
    Share
    Facebook Twitter LinkedIn Pinterest Telegram Email


    Lumma Stealer, a recently identified information-stealing malware, is being distributed to users via fake human verification pages. According to researchers at the cybersecurity firm CloudSEK, the malware is targeting Windows devices and is designed to steal sensitive information from the infected device. Concerningly, researchers have discovered multiple phishing websites which are deploying these fake verification pages to trick users into downloading the malware. CloudSEK researchers have warned organisations to implement endpoint protection solutions and to train employees and users about this new social engineering tactic.

    Lumma Stealer Malware Being Distributed Using New Phishing Technique

    According to the CloudSEK report, multiple active websites were found to be spreading the Lumma Stealer malware. The technique was first discovered by Unit42 at Palo Alto Networks, a cybersecurity firm, but the scope of the distribution chain is now believed to be much larger than previously assumed.

    The attackers have set up various malicious websites and have added a fake human verification system, resembling the Google Completely Automated Public Turing test to tell Computers and Humans Apart (CAPTCHA) page. However, unlike the regular CAPTCHA page where users have to check a few boxes or perform similar pattern-based tasks to prove they are not a bot, the fake pages instruct the user to run some unusual commands.

    In one instance, the researchers spotted a fake verification page asking users to execute a PowerShell script. PowerShell scripts contain a series of commands that can be executed in the Run dialog box. In this case, the commands were found to fetch the content from the a.txt file hosted on a remote server. This prompted a file to be downloaded and extracted on the Windows system, infecting it with Lumma Stealer.

    The report also listed the malicious URLs which were spotted distributing the malware to unsuspecting users. However, this is not the full list and there might be more such websites carrying out the attack.

    • hxxps[://]heroic-genie-2b372e[.]netlify[.]app/please-verify-z[.]html
    • hxxps[://]fipydslaongos[.]b-cdn[.]net/please-verify-z[.]html
    • hxxps[://]sdkjhfdskjnck[.]s3[.]amazonaws[.]com/human-verify-system[.]html
    • hxxps[://]verifyhuman476[.]b-cdn[.]net/human-verify-system[.]html
    • hxxps[://]pub-9c4ec7f3f95c448b85e464d2b533aac1[.]r2[.]dev/human-verify-system[.]html
    • hxxps[://]verifyhuman476[.]b-cdn[.]net/human-verify-system[.]html
    • hxxps[://]newvideozones[.]click/veri[.]html
    • hxxps[://]ch3[.]dlvideosfre[.]click/human-verify-system[.]html
    • hxxps[://]newvideozones[.]click/veri[.]html
    • hxxps[://]ofsetvideofre[.]click

    The researchers also observed that content delivery networks (CDNs) were being used to spread these fake verification pages. Further, the attackers were spotted using base64 encoding and clipboard manipulation to evade demonstration. It is also possible to distribute other malware using the same technique, although such instances have not been seen so far.

    Since the modus operandi of the attack is based on phishing techniques, no security patch can prevent devices from getting infected. However, there are some steps users and organisations can take to safeguard against the Lumma stealer malware.

    As per the report, users and employees should be made aware of this phishing tactic to help them not fall for it. Additionally, organisations should implement and maintain reliable endpoint protection solutions to detect and block PowerShell-based attacks. Further, regularly updating and patching systems to reduce the vulnerabilities that Lumma Stealer malware can exploit should also help.

    For the latest tech news and reviews, follow Gadgets 360 on X, Facebook, WhatsApp, Threads and Google News. For the latest videos on gadgets and tech, subscribe to our YouTube channel. If you want to know everything about top influencers, follow our in-house Who’sThat360 on Instagram and YouTube.


    Moto G85 5G Could Soon Be Available in Two New Colour Options in India





    Source link

    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Kavish
    • Website

    Related Posts

    Motorola Edge 70 Pro Launching in India Today via Flipkart: Check Specifications & Expected Price Range

    April 25, 2026

    OPPO Find X9s Launched Globally with MediaTek Dimensity 9500s SoC: Check Price, Specifications, Features

    April 25, 2026

    OPPO Find X9s Pro Compact Flagship Launched with MediaTek Dimensity 9500 SoC, 200MP Cameras, 7025mAh Battery

    April 25, 2026

    OnePlus Nord CE 6 Full Specifications Confirmed Ahead of Launch in India on May 7: What to Expect

    April 24, 2026

    iQOO Phone With Dimensity 9500 And 8,000mAh Battery Tipped To Launch; May Be Part Of iQOO 15 Series

    April 24, 2026

    OPPO Find X9 Ultra, X9s Set To Launch In India In May: Check Specs And Features

    April 24, 2026
    Leave A Reply Cancel Reply

    Top Reviews
    Editors Picks

    Motorola Edge 70 Pro Launching in India Today via Flipkart: Check Specifications & Expected Price Range

    April 25, 2026

    OPPO Find X9s Launched Globally with MediaTek Dimensity 9500s SoC: Check Price, Specifications, Features

    April 25, 2026

    OPPO Find X9s Pro Compact Flagship Launched with MediaTek Dimensity 9500 SoC, 200MP Cameras, 7025mAh Battery

    April 25, 2026

    OnePlus Nord CE 6 Full Specifications Confirmed Ahead of Launch in India on May 7: What to Expect

    April 24, 2026
    About Us
    About Us

    Email Us: info@xarkas.com

    Facebook Pinterest
    © 2026 . Designed by Xarkas Technologies.
    • Home
    • Mobiles
    • Privacy Policy

    Type above and press Enter to search. Press Esc to cancel.

    Ad Blocker Enabled!
    Ad Blocker Enabled!
    Our website is made possible by displaying online advertisements to our visitors. Please support us by disabling your Ad Blocker.