Lumma Stealer, a malware-as-a-service, is using a new tactic to scam targets via malicious CAPTCHA pages. By posing as a verification process, the malware prompts targets to inadvertently trigger a malware download. Lumma Stealer specialises in stealing sensitive data, including passwords and crypto-wallet information. This new strategy, exploiting CAPTCHA, displays the malware’s adaptability in evading detection and the need for consistent monitoring and adaptation by security forces.

Hackers Leveraging Microsoft Edge Internet Explorer Mode to Gain Access to Users’ Devices
The cybersecurity landscape witnessed a concerning development as threat actors discovered a novel attack vector targeting Microsoft Edge’s Internet Explorer mode functionality. This sophisticated campaign