* . *
  • About
  • Advertise
  • Privacy & Policy
  • Contact
Friday, November 21, 2025
Earth-News
  • Home
  • Business
  • Entertainment
    Star Panel to Consider Moviegoing in an Evolving Marketplace – Noozhawk

    Star Panel to Explore the Future of Moviegoing in a Changing Marketplace

    Mattel makes another bold family-entertainment move beyond toys – TheStreet

    Mattel makes another bold family-entertainment move beyond toys – TheStreet

    Themed Entertainment Association announces 32nd annual Thea Award recipients – InPark Magazine

    Themed Entertainment Association announces 32nd annual Thea Award recipients – InPark Magazine

    American Legion Hall celebrates Veterans with night of entertainment – Bethany Republican-Clipper

    American Legion Hall celebrates Veterans with night of entertainment – Bethany Republican-Clipper

    Liev Schreiber ‘cleared to return to work’ after weekend hospitalization, rep confirms – Los Angeles Times

    Liev Schreiber ‘cleared to return to work’ after weekend hospitalization, rep confirms – Los Angeles Times

    Claire Danes Gets Honest About Her Surprise Pregnancy at Age 44 – Yahoo

    Claire Danes Gets Honest About Her Surprise Pregnancy at Age 44 – Yahoo

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology
    MACo’s Inaugural Information Technology Conference – Maryland Association of Counties

    Maryland’s Inaugural Information Technology Conference Sparks a New Era of County Innovation

    F&I Sentinel Recognized on the 2025 Deloitte Technology Fast 500™ for the Second Consecutive Year – PR Newswire

    F&I Sentinel Achieves Back-to-Back Honors on the 2025 Deloitte Technology Fast 500™

    Keeping up with new technology – The Clinton Chronicle

    Stay Ahead of the Curve: Master the Hottest Technology Trends Today

    How hybrid technology supports sustainable driving – AZ Big Media

    How Hybrid Technology is Powering the Future of Sustainable Transportation

    Mid-Atlantic Technology Summit 2025 showcases next-gen tools for first responders – FireRescue1

    Mid-Atlantic Technology Summit 2025 Reveals Game-Changing Tools Empowering First Responders

    CFCC to host career discovery nights on K-12 Teacher Preparation and Chemical Technology programs – WECT

    Unlock Your Potential: Career Discovery Nights for K-12 Teacher Preparation and Chemical Technology Programs at CFCC

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
  • Home
  • Business
  • Entertainment
    Star Panel to Consider Moviegoing in an Evolving Marketplace – Noozhawk

    Star Panel to Explore the Future of Moviegoing in a Changing Marketplace

    Mattel makes another bold family-entertainment move beyond toys – TheStreet

    Mattel makes another bold family-entertainment move beyond toys – TheStreet

    Themed Entertainment Association announces 32nd annual Thea Award recipients – InPark Magazine

    Themed Entertainment Association announces 32nd annual Thea Award recipients – InPark Magazine

    American Legion Hall celebrates Veterans with night of entertainment – Bethany Republican-Clipper

    American Legion Hall celebrates Veterans with night of entertainment – Bethany Republican-Clipper

    Liev Schreiber ‘cleared to return to work’ after weekend hospitalization, rep confirms – Los Angeles Times

    Liev Schreiber ‘cleared to return to work’ after weekend hospitalization, rep confirms – Los Angeles Times

    Claire Danes Gets Honest About Her Surprise Pregnancy at Age 44 – Yahoo

    Claire Danes Gets Honest About Her Surprise Pregnancy at Age 44 – Yahoo

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology
    MACo’s Inaugural Information Technology Conference – Maryland Association of Counties

    Maryland’s Inaugural Information Technology Conference Sparks a New Era of County Innovation

    F&I Sentinel Recognized on the 2025 Deloitte Technology Fast 500™ for the Second Consecutive Year – PR Newswire

    F&I Sentinel Achieves Back-to-Back Honors on the 2025 Deloitte Technology Fast 500™

    Keeping up with new technology – The Clinton Chronicle

    Stay Ahead of the Curve: Master the Hottest Technology Trends Today

    How hybrid technology supports sustainable driving – AZ Big Media

    How Hybrid Technology is Powering the Future of Sustainable Transportation

    Mid-Atlantic Technology Summit 2025 showcases next-gen tools for first responders – FireRescue1

    Mid-Atlantic Technology Summit 2025 Reveals Game-Changing Tools Empowering First Responders

    CFCC to host career discovery nights on K-12 Teacher Preparation and Chemical Technology programs – WECT

    Unlock Your Potential: Career Discovery Nights for K-12 Teacher Preparation and Chemical Technology Programs at CFCC

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
Earth-News
No Result
View All Result
Home Technology

Beware of fake CrowdStrike domains pumping out Lumma infostealing malware

July 25, 2024
in Technology
Beware of fake CrowdStrike domains pumping out Lumma infostealing malware
Share on FacebookShare on Twitter

CrowdStrike is the latest lure being used to trick Windows users into downloading and running the notorious Lumma infostealing malware, according to the security shop’s threat intel team, which spotted the scam just days after the Falcon sensor update fiasco.

Infostealers such as Lumma scour infected machines for any stored sensitive info, such as site login details and browser histories. This data is then quietly exfiltrated to the malware’s operators to use for fraud, theft, and other crimes.

More specifically, this stolen information is used to gain illicit access to victims’ online bank accounts and cryptocurrency wallets, along with email inboxes, remote desktop accounts, and other apps and services that require legitimate login credentials, which makes this type of malware especially popular among cyber-crooks.

Lumma is a relatively popular stealer that has been in high demand among ransomware crews since 2022. It’s also one of the infostealers that Mandiant says the criminal gang UNC5537 used to obtain credentials that were then used to break into Snowflake cloud storage environments earlier this spring.

In the CrowdStrike campaign, the Lumma build timestamp “indicates the actor highly likely built the sample for distribution the day after the single content update for CrowdStrike’s Falcon sensor was identified,” the security shop noted.

The domain, crowdstrike-office365[.]com, was registered on July 23, just days after CrowdStrike’s July 19 faulty update crashed 8.5 million Windows machines. It speculates that the group behind the domain is linked to earlier social-engineering attacks in June, which also distributed the Lumma malware. 

In these earlier infostealer campaigns, the miscreants spammed out phishing emails, and then followed up with phone calls purporting to be from a Microsoft Teams helpdesk employee.

“Based on the shared infrastructure between the campaigns and apparent targeting of corporate networks, CrowdStrike Intelligence assesses with moderate confidence that the activity is likely attributable to the same unnamed threat actor,” the CrowdStrike team reports.

Cybercrooks spell trouble with typosquatting domains amid CrowdStrike crisis

Cybercriminals quickly exploit CrowdStrike chaos

The months and days before and after CrowdStrike’s fatal Friday

CrowdStrike Windows patchpocalypse could take weeks to fix, IT admins fear

The fake CrowdStrike domain attempts to trick users into clicking on and fetching a .zip file purporting to be a recovery tool to fix the boot loop caused by the bad sensor update. The archive contains a Microsoft Installer file, WidowsSystem-update[.]msi, which is actually a malware loader. 

After the loader is executed by the mark, it drops and runs self-extracting RAR file, plenrco[.]exe, that has a Nullsoft Scriptable Install System (NSIS) installer with the filename SymposiumTaiwan[.]exe. This file includes some code fragments of a legitimate AutoIt executable that is heavily obfuscated, and will terminate if the victim’s machine is running antivirus software.

But assuming the coast is clear, and the malware can continue undetected, the AutoIt loader runs one of two shellcodes, depending on if its a 32 or 64-bit system, and ultimately deploys the Lumma malware.

Just hours after CrowdStrike’s dodgy sensor update sent Windows machines into a BSOD spiral, reports surfaced of scam emails using the outage as a lure and claiming to come from CrowdStrike Support or CrowdStrike Security. The security biz claims that 97 percent of effected systems are now back online. ®

>>> Read full article>>>
Copyright for syndicated content belongs to the linked Source : The Register – https://go.theregister.com/feed/www.theregister.com/2024/07/25/crowdstrike_lumma_infostealer/

Tags: BewareCrowdStriketechnology
Previous Post

OpenAI unveils AI search engine SearchGPT – not that you’re allowed to use it yet

Next Post

The 10 best immersive sims on PC

Restoring the Loire’s natural flow: a major EU-supported ecological and territorial achievement – European Commission

Reviving the Loire River: A Landmark Ecological and Regional Triumph

November 21, 2025
NJ Supreme Court rules on shaken baby syndrome. ‘We are judges, not scientists’ – Central New Jersey News

NJ Supreme Court rules on shaken baby syndrome. ‘We are judges, not scientists’ – Central New Jersey News

November 21, 2025
Inside the Science Library’s newest exhibit on biodiversity – New University | UC Irvine

Discover the Amazing World of Biodiversity at the Science Library’s Exciting New Exhibit!

November 21, 2025

How much historic Braintree house rental is listed for. And one quirky thing – Yahoo

November 21, 2025
MACo’s Inaugural Information Technology Conference – Maryland Association of Counties

Maryland’s Inaugural Information Technology Conference Sparks a New Era of County Innovation

November 21, 2025
College Sports Commission sends participation agreement to Power Four conferences – CBS Sports

College Sports Commission Unveils Bold New Participation Agreement to Energize Power Four Conferences

November 21, 2025
Japan’s exports to the world rise but drop to the US due to tariffs – WRAL

Japan’s exports to the world rise but drop to the US due to tariffs – WRAL

November 21, 2025
These stocks are set to outperform in a ‘K-shape’ economy, Wolfe Research says – CNBC

Stocks Poised to Soar in a ‘K-Shaped’ Economy: Top Picks to Watch

November 21, 2025
Star Panel to Consider Moviegoing in an Evolving Marketplace – Noozhawk

Star Panel to Explore the Future of Moviegoing in a Changing Marketplace

November 21, 2025
Africa CDC Unveils a New Vision for Health Security and Sovereignty Across the Continent – Africa CDC

Africa CDC Unveils Ambitious Plan to Boost Health Security and Sovereignty Across the Continent

November 21, 2025

Categories

Archives

November 2025
M T W T F S S
 12
3456789
10111213141516
17181920212223
24252627282930
« Oct    
Earth-News.info

The Earth News is an independent English-language daily published Website from all around the World News

Browse by Category

  • Business (20,132)
  • Ecology (930)
  • Economy (949)
  • Entertainment (21,824)
  • General (18,306)
  • Health (9,989)
  • Lifestyle (960)
  • News (22,149)
  • People (954)
  • Politics (962)
  • Science (16,163)
  • Sports (21,450)
  • Technology (15,930)
  • World (936)

Recent News

Restoring the Loire’s natural flow: a major EU-supported ecological and territorial achievement – European Commission

Reviving the Loire River: A Landmark Ecological and Regional Triumph

November 21, 2025
NJ Supreme Court rules on shaken baby syndrome. ‘We are judges, not scientists’ – Central New Jersey News

NJ Supreme Court rules on shaken baby syndrome. ‘We are judges, not scientists’ – Central New Jersey News

November 21, 2025
  • About
  • Advertise
  • Privacy & Policy
  • Contact

© 2023 earth-news.info

No Result
View All Result

© 2023 earth-news.info

No Result
View All Result

© 2023 earth-news.info

Go to mobile version