cognitive cybersecurity intelligence

News and Analysis

Search

Phishing campaign mimics CAPTCHA to spread malware

Cybersecurity firm CloudSEK has disclosed malicious Windows malware Lumma Stealer’s advanced dissemination method. This technique involves imitation Google CAPTCHA verification pages on phishing websites hosted on trusted platforms like Amazon S3. A hidden JavaScript function activates a base64-encoded PowerShell command that communicates with a server to download the Lumma Stealer malware upon user verification. The company advocates user education, robust endpoint protection, behavioural analysis and real-time monitoring tools, and regular system updates to counter this threat.

Source: www.techzine.eu –

Subscribe to newsletter

Subscribe to HEAL Security Dispatch for the latest healthcare cybersecurity news and analysis.

More Posts