Hackers are using nearly 1,000 fake websites mimicking Reddit and WeTransfer to spread the Lumma Stealer malware, aimed at stealing personal information. These counterfeit sites imitate legitimate discussions and file-sharing services, tricking users into downloading the malware. Reddit isn’t the sole method this malware spreads, with GitHub comments, deepfake websites, and shady online ads also being used. Once login credentials are stolen, they are often sold on hacker forums for further attacks.

400+ SAP NetWeaver Devices Vulnerable to 0-Day Attacks that Exploited in the Wild
Shadow Servers have identified 454 vulnerable SAP NetWeaver systems affected by a critical zero-day flaw, CVE-2025-31324, allowing unauthenticated file uploads and potential system compromise. Discovered