Malware
LummaStealer
- First Reported
- May 19, 2026
- Latest Reported
- Aug 19, 2026
Reported Context (2)
- In other, related cases we observed LummaStealer being delivered through the same AI-branded infrastructure, using the classic ClickFix method of a fake CAPTCHA page, rather than the InstallFix technique described above. Sophos Finds Fake AI Installers Dominated Malware Cases
- “ClickFix” attacks were also used with a new LummaStealer and CastleLoader campaign, not to mention the malware used to infect the devices of people who downloaded pirated versions of Leonardo DiCaprio’s new film, One Bitdefender Details Malware Campaigns Abusing Windows’ MSHTA Utility
CVE (2)
Malware (11)
People (2)
Threat Actors (4)
MITRE ATT&CK (12)
Vendors (6)
Products (17)
Tools (6)
Industries (1)
Note: Related entities, including threat actors, malware, CVEs, MITRE ATT&CK techniques, vendors, products, tools, countries, and industries, are shown when they appear in the same reporting. Their presence does not necessarily mean they were targeted, compromised, vulnerable, responsible for the activity, or directly involved in the incident.