Cybersecurity researchers from Sekoia have warned of hundreds of fake Reddit and WeTransfer pages used to deploy the Lumma Stealer malware. The well-built fake Reddit pages display threads where users share links to fake WeTransfer pages to download malware. The URLs of these pages contain official brand names and sit on .org and .net domains, enhancing their appearance of legitimacy. The actual malware is hosted on “weighcobbweo[.]top.” The targets often depend on the type of software being faked.
Hacker Traps Newbie Cybercriminals With Malware Posing as Trojan Builder
A hacker is exploiting cybercriminals using a Trojan builder that secretly infects their Windows PCs. Built using a software kit that produces a version of