The Lumma Stealer malware is back, using thousands of fake Reddit and WeTransfer web pages to steal user data. More than 500 fake Reddit pages and 400 WeTransfer pages have been discovered, all hosting download links to the malware. The malware, once installed, steals data to be used on other platforms or sold on dark web forums.

Threat Actors Exploiting DevOps Web Servers Misconfigurations To Deploy Malware
A new cryptojacking campaign, led by threat actor JINX-0132, exploits misconfigurations in popular DevOps applications like HashiCorp Nomad and Docker API. By utilizing legitimate tools