Skip to main content
← All Articles

Tag

#Lumma Stealer

8 articles

Advertisement

ClickFix Social Engineering: How to Detect Fake Browser Update Attacks
HIGH
Threat Intel

ClickFix Social Engineering: How to Detect Fake Browser Update Attacks

ClickFix has become the dominant malware delivery method. Learn how attackers use fake browser error overlays to trick users into executing malicious PowerShell.

Runtime Rebel Intel
3 min read · Jul 2, 2026
HIGH
Malware

Lumma Stealer Distributed via Fake EditPro AI Image Generator

Threat actors are leveraging a fake AI image generator website to distribute Lumma Stealer malware targeting both Windows and macOS systems.

Runtime Rebel Intel
3 min read · Jun 13, 2026
HIGH
Threat Intel

DriveSurge Campaigns: Detecting ClickFix and FakeUpdate Overlays

DriveSurge threat actors have hijacked thousands of sites to deploy ClickFix and FakeUpdate overlays, delivering info-stealers via deceptive browser alerts.

Runtime Rebel Intel
3 min read · Jun 2, 2026
MEDIUM
Malware

Hugging Face and ClawHub Abused for Malware Distribution

Threat actors are exploiting the trust of AI and code-hosting platforms like Hugging Face and ClawHub to distribute malware via social engineering lures.

Runtime Rebel Intel
4 min read · May 1, 2026
HIGH
Malware

Lumma Stealer and Sectop RAT Dual Infection Chain Analysis

Technical breakdown of the Lumma Stealer and Sectop RAT (ArechClient2) infection chain, detailing C2 communication and persistence mechanisms.

Runtime Rebel Intel
3 min read · Apr 17, 2026
Lumma Stealer Phishing Campaign: Avoiding Copyright Notice Decoys
HIGH
Threat Intel

Lumma Stealer Phishing Campaign: Avoiding Copyright Notice Decoys

Phishing campaign targets healthcare and government sectors with copyright infringement decoys to deliver Lumma Stealer via legitimate cloud services.

Runtime Rebel Intel
4 min read · Mar 23, 2026

Advertisement

HIGH
Malware

InstallFix Campaign: Cloned AI Tool Sites Distribute Info-Stealers

The InstallFix campaign uses cloned AI tool websites and malicious PowerShell commands to distribute info-stealers like Lumma and Vidar. Stay protected.

Runtime Rebel Intel
4 min read · Mar 9, 2026
Windows Terminal Exploited in ClickFix Campaign for Lumma Stealer
HIGH
Threat Intel

Windows Terminal Exploited in ClickFix Campaign for Lumma Stealer

Microsoft identifies a new ClickFix campaign using Windows Terminal to deliver Lumma Stealer. Analysis of social engineering TTPs and mitigation steps included.

Runtime Rebel Intel
4 min read · Mar 6, 2026