Black Lotus Labs researchers found that malware installation in targeted routers allows the deployment of a cd00r variant. This scans for five network signals, triggering reverse shell creation on the local file system, enabling device takeover, data theft, and further malware compromise.
Reddit, WeTransfer pages spoofed in Lumma Stealer campaign
Around 1,000 fake Reddit and WeTransfer pages are disseminating Lumma Stealer malware, according to a Sekoia.io researcher. The counterfeit pages mimic authentic Reddit conversations and