Close Menu
Best in TechnologyBest in Technology
  • News
  • Phones
  • Laptops
  • Gadgets
  • Gaming
  • AI
  • Tips
  • More
    • Web Stories
    • Global
    • Press Release

Subscribe to Updates

Get the latest tech news and updates directly to your inbox.

What's On
Toyota just introduced its own robotaxi to tackle Tesla and Waymo

Toyota just introduced its own robotaxi to tackle Tesla and Waymo

9 February 2026
Riot Games Is Laying Off Around 80 2XKO Employees Three Weeks After The Game’s Launch

Riot Games Is Laying Off Around 80 2XKO Employees Three Weeks After The Game’s Launch

9 February 2026
Sony leak hypes improved noise cancellation in the upcoming WF-1000XM6 earbuds

Sony leak hypes improved noise cancellation in the upcoming WF-1000XM6 earbuds

9 February 2026
Facebook X (Twitter) Instagram
Just In
  • Toyota just introduced its own robotaxi to tackle Tesla and Waymo
  • Riot Games Is Laying Off Around 80 2XKO Employees Three Weeks After The Game’s Launch
  • Sony leak hypes improved noise cancellation in the upcoming WF-1000XM6 earbuds
  • This Startup Thinks It Can Make Rocket Fuel From Water. Stop Laughing
  • YouTube TV’s new bundles are here to help you lower your streaming bill
  • Save $100 On Our Favorite Home Printer
  • Ferrari’s first electric car is Luce, rocking interiors by ex-Apple designer Jony Ive
  • How Curling Became the Winter Olympics’ Favorite Fixation
Facebook X (Twitter) Instagram Pinterest Vimeo
Best in TechnologyBest in Technology
  • News
  • Phones
  • Laptops
  • Gadgets
  • Gaming
  • AI
  • Tips
  • More
    • Web Stories
    • Global
    • Press Release
Subscribe
Best in TechnologyBest in Technology
Home » Lumma Stealer Malware Being Spread to Windows Devices via Fake Human Verification Pages, CloudSEK Says
Laptops

Lumma Stealer Malware Being Spread to Windows Devices via Fake Human Verification Pages, CloudSEK Says

News RoomBy News Room19 September 20243 Mins Read
Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
Lumma Stealer Malware Being Spread to Windows Devices via Fake Human Verification Pages, CloudSEK Says
Share
Facebook Twitter LinkedIn Pinterest Email

Lumma Stealer, a recently identified information-stealing malware, is being distributed to users via fake human verification pages. According to researchers at the cybersecurity firm CloudSEK, the malware is targeting Windows devices and is designed to steal sensitive information from the infected device. Concerningly, researchers have discovered multiple phishing websites which are deploying these fake verification pages to trick users into downloading the malware. CloudSEK researchers have warned organisations to implement endpoint protection solutions and to train employees and users about this new social engineering tactic.

Lumma Stealer Malware Being Distributed Using New Phishing Technique

According to the CloudSEK report, multiple active websites were found to be spreading the Lumma Stealer malware. The technique was first discovered by Unit42 at Palo Alto Networks, a cybersecurity firm, but the scope of the distribution chain is now believed to be much larger than previously assumed.

The attackers have set up various malicious websites and have added a fake human verification system, resembling the Google Completely Automated Public Turing test to tell Computers and Humans Apart (CAPTCHA) page. However, unlike the regular CAPTCHA page where users have to check a few boxes or perform similar pattern-based tasks to prove they are not a bot, the fake pages instruct the user to run some unusual commands.

In one instance, the researchers spotted a fake verification page asking users to execute a PowerShell script. PowerShell scripts contain a series of commands that can be executed in the Run dialog box. In this case, the commands were found to fetch the content from the a.txt file hosted on a remote server. This prompted a file to be downloaded and extracted on the Windows system, infecting it with Lumma Stealer.

The report also listed the malicious URLs which were spotted distributing the malware to unsuspecting users. However, this is not the full list and there might be more such websites carrying out the attack.

  • hxxps[://]heroic-genie-2b372e[.]netlify[.]app/please-verify-z[.]html
  • hxxps[://]fipydslaongos[.]b-cdn[.]net/please-verify-z[.]html
  • hxxps[://]sdkjhfdskjnck[.]s3[.]amazonaws[.]com/human-verify-system[.]html
  • hxxps[://]verifyhuman476[.]b-cdn[.]net/human-verify-system[.]html
  • hxxps[://]pub-9c4ec7f3f95c448b85e464d2b533aac1[.]r2[.]dev/human-verify-system[.]html
  • hxxps[://]verifyhuman476[.]b-cdn[.]net/human-verify-system[.]html
  • hxxps[://]newvideozones[.]click/veri[.]html
  • hxxps[://]ch3[.]dlvideosfre[.]click/human-verify-system[.]html
  • hxxps[://]newvideozones[.]click/veri[.]html
  • hxxps[://]ofsetvideofre[.]click

The researchers also observed that content delivery networks (CDNs) were being used to spread these fake verification pages. Further, the attackers were spotted using base64 encoding and clipboard manipulation to evade demonstration. It is also possible to distribute other malware using the same technique, although such instances have not been seen so far.

Since the modus operandi of the attack is based on phishing techniques, no security patch can prevent devices from getting infected. However, there are some steps users and organisations can take to safeguard against the Lumma stealer malware.

As per the report, users and employees should be made aware of this phishing tactic to help them not fall for it. Additionally, organisations should implement and maintain reliable endpoint protection solutions to detect and block PowerShell-based attacks. Further, regularly updating and patching systems to reduce the vulnerabilities that Lumma Stealer malware can exploit should also help.

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
Previous ArticlePreorder Apple Watch Series 10 and Ultra 2: best deals so far
Next Article Moto G85 5G Could Soon Be Available in Two New Colour Options in India

Related Articles

Flipkart Independence Day Sale 2025: Best Deals on Laptops Teased Before the Sale Begins
Laptops

Flipkart Independence Day Sale 2025: Best Deals on Laptops Teased Before the Sale Begins

12 August 2025
Apple MacBook Model With A-Series Chip, Affordable Price Tag to Launch in Early 2026: Report
Laptops

Apple MacBook Model With A-Series Chip, Affordable Price Tag to Launch in Early 2026: Report

12 August 2025
Vivo V60 – Price in India, Specifications (12th August 2025)
Laptops

Vivo V60 – Price in India, Specifications (12th August 2025)

12 August 2025
HTC Wildfire E4 Plus – Price in India, Specifications (12th August 2025)
Laptops

HTC Wildfire E4 Plus – Price in India, Specifications (12th August 2025)

12 August 2025
Honor X7c – Price in India, Specifications (12th August 2025)
Laptops

Honor X7c – Price in India, Specifications (12th August 2025)

12 August 2025
Apple MacBook Model With A-Series Chip, Affordable Price Tag to Launch in Early 2026: Report
Laptops

Apple MacBook Pro With M6 Chip, OLED Display Launch Expected by Early 2027: Mark Gurman

11 August 2025
Demo
Top Articles
ChatGPT o1 vs. o1-mini vs. 4o: Which should you use?

ChatGPT o1 vs. o1-mini vs. 4o: Which should you use?

15 December 2024108 Views
5 laptops to buy instead of the M4 MacBook Pro

5 laptops to buy instead of the M4 MacBook Pro

17 November 2024101 Views
Costco partners with Electric Era to bring back EV charging in the U.S.

Costco partners with Electric Era to bring back EV charging in the U.S.

28 October 202498 Views

Subscribe to Updates

Get the latest tech news and updates directly to your inbox.

Latest News
Save 0 On Our Favorite Home Printer News

Save $100 On Our Favorite Home Printer

News Room9 February 2026
Ferrari’s first electric car is Luce, rocking interiors by ex-Apple designer Jony Ive News

Ferrari’s first electric car is Luce, rocking interiors by ex-Apple designer Jony Ive

News Room9 February 2026
How Curling Became the Winter Olympics’ Favorite Fixation News

How Curling Became the Winter Olympics’ Favorite Fixation

News Room9 February 2026
Most Popular
The Spectacular Burnout of a Solar Panel Salesman

The Spectacular Burnout of a Solar Panel Salesman

13 January 2025137 Views
ChatGPT o1 vs. o1-mini vs. 4o: Which should you use?

ChatGPT o1 vs. o1-mini vs. 4o: Which should you use?

15 December 2024108 Views
5 laptops to buy instead of the M4 MacBook Pro

5 laptops to buy instead of the M4 MacBook Pro

17 November 2024101 Views
Our Picks
This Startup Thinks It Can Make Rocket Fuel From Water. Stop Laughing

This Startup Thinks It Can Make Rocket Fuel From Water. Stop Laughing

9 February 2026
YouTube TV’s new bundles are here to help you lower your streaming bill

YouTube TV’s new bundles are here to help you lower your streaming bill

9 February 2026
Save 0 On Our Favorite Home Printer

Save $100 On Our Favorite Home Printer

9 February 2026

Subscribe to Updates

Get the latest tech news and updates directly to your inbox.

Facebook X (Twitter) Instagram Pinterest
  • Privacy Policy
  • Terms of use
  • Advertise
  • Contact Us
© 2026 Best in Technology. All Rights Reserved.

Type above and press Enter to search. Press Esc to cancel.