Fake Reddit and WeTransfer Sites are Pushing Malware
ID: 05a8c262-afae-5f92-ad6d-ecbd6f7c0aff
STIX ID: report--05a8c262-afae-5f92-ad6d-ecbd6f7c0aff
Feed Name: Schneier on Security
Threat Score
A large-scale campaign is using thousands of fake Reddit and WeTransfer webpages to push the Lumma Stealer infostealer. Victims who click poisoned search-engine results are redirected to counterfeit WeTransfer pages where a 'Download' button retrieves the Lumma Stealer payload from domains such as weighcobbweo.top.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
