Hundreds of fake Reddit sites push Lumma Stealer malware
ID: 7e78c06c-1771-5051-b428-1d4d754fe9e2
STIX ID: report--7e78c06c-1771-5051-b428-1d4d754fe9e2
Feed Name: Bleeping Computer
Threat Score
Researchers discovered ~936 malicious sites impersonating Reddit (529) and WeTransfer (407) that lure users via fake discussion threads and WeTransfer-style download pages to fetch the Lumma Stealer info‑stealer; a full list of domains was published and the campaign likely spreads via malvertising, SEO poisoning, social messages, and malicious sites, posing significant credential and session-token theft risk.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
