Cybercriminals are utilizing YouTube to spread malware, specifically an info-stealing variant named Lumma Stealer which can extract sensitive data. Assailants take over well-known YouTube channels, add malicious content presented as cracked software or game cheats and exploit users’ trust. They further secure their tactics by using legitimate file-hosting services, password-protecting downloads and encoding to avoid early detection. Cybersecurity professionals urge individuals to avoid pirated software, verify download sources and improve their overall cybersecurity practices.

Sonatype reports rise in open source malware to 17,954
The 1Q 2025 Open Source Malware Index from Sonatype revealed that open source malware packages doubled compared to the same period last year, with 56%