An international coalition of law enforcement agencies and leading technology companies has successfully carried out an operation to eliminate the malicious infrastructure associated with Lumma Stealer. This is one of the most dangerous infostealers, Trojans aimed at stealing cryptocurrency wallets and other confidential information. As reported by Wired, as part of the special operation, more than 2,300 domains used to distribute and manage malware were disabled. Lumma Stealer was actively used in attacks on crypto investors, stealing passwords, cookies, private keys and access to crypto wallets. The program was distributed through phishing sites, fake software downloaders and hacked applications. Recently, Lumma has been actively used in attacks on crypto investors, especially those who did not use two-factor authentication and stored keys in browsers.
The coordinated operation, dubbed Operation Eclipse, involved Europol, Interpol, the FBI, and major cybersecurity players including Microsoft, Cisco, and Cloudflare. According to preliminary information, several participants in the criminal scheme have been identified, including in Eastern Europe and Asia, and arrest warrants have been issued for key figures.
Читайте также
Operation Eclipse Disarms Lumma Stealer
Experts note that Lumma was one of the largest threats to cryptocurrency users. Since cryptocurrency transactions are irreversible, the damage from such attacks could amount to tens and hundreds of thousands of dollars. According to analysts, the elimination of Lumma infrastructure can significantly reduce the risk of cryptocurrency theft, but users are still advised to observe cyber hygiene measures: use hardware wallets, two-factor authentication, and avoid installing suspicious software.