Malware
LummaC2
- First Reported
- Sep 21, 2026
- Latest Reported
- Oct 1, 2026
Reported Context (2)
- Through Remus operator-published forum posts and cybersecurity company Gen Digital's code analysis, CIS CTI confirmed Remus traces its lineage to Lumma Stealer through an intermediate project called Tenzor. CIS Links SLTT Remus C2 Traffic to Three Malware Delivery Chains
- The malware involved was not novel or targeted. Anthropic identified Vidar, LummaC2, StealC, RedLine, and Acreed on Windows, along with Atomic Stealer on a smaller number of Macs. These families steal whatever is stored Phishing Kits Steal Valid Sessions, Moving Attacks Beyond MFA
Malware (7)
Threat Actors (3)
MITRE ATT&CK (16)
Vendors (2)
Products (8)
Tools (8)
Industries (1)
Countries (1)
Note: Related entities, including threat actors, malware, CVEs, MITRE ATT&CK techniques, vendors, products, tools, countries, and industries, are shown when they appear in the same reporting. Their presence does not necessarily mean they were targeted, compromised, vulnerable, responsible for the activity, or directly involved in the incident.