Lumma, Microsoft and malware
Digest more
Earlier this month, a coordinated disruption action targeting the Lumma malware-as-a-service (MaaS) information stealer operation seized thousands of domains, part of its infrastructure backbone worldwide.
The messages seemed innocuous, mundane even. Someone posing as a prospective guest emailed a hotel questions about a purported comment left on Booking.com. Another message was supposedly from that third-party booking site to review negative guest feedback.
The Lumma infostealer has become a popular way for hackers to steal sensitive data like banking information and cryptocurrency wallets.
According to FBI Deputy Assistant Director for Cyber Operations Brett Leatherman, who called it the "most prolific information stealer for sale in online criminal markets," Lumma has been used in at least 1.7 million instances of this kind of data theft since November 2023.