ETDA สำนักงานพัฒนาธุรกรรมทางอิเล็กทรอนิกส์
Electronic Transactions Development Agency
Report
Search
Home > List all groups > List all tools > List all groups using tool LummaC2

Threat Group Cards: A Threat Actor Encyclopedia

Permanent link Tool: LummaC2

NamesLummaC2
Lumma Stealer
CategoryMalware
TypeInfo stealer
Description(Cofense) Lumma Stealer, also known as LummaC2, is a subscription-based information stealer that was first seen in 2022. It is written in C and has a wide array of capabilities. This malware is primarily used for stealing cryptocurrency wallets and sensitive information such as usernames and passwords. Lumma Stealer also has the ability to deliver additional payloads.
Information<https://cofense.com/blog/luxury-hotels-remain-target-of-social-engineering-attack/>
<https://securelist.com/crimeware-report-asmcrypt-loader-lumma-stealer-zanubis-banker/110512/>
<https://outpost24.com/blog/lummac2-anti-sandbox-technique-trigonometry-human-detection/>
<https://perception-point.io/blog/behind-the-attack-lumma-malware/>
<https://www.fortinet.com/blog/threat-research/lumma-variant-on-youtube>
<https://www.ontinue.com/resource/obfuscated-powershell-leads-to-lumma-c2-stealer/>
<https://www.cloudsek.com/blog/unmasking-the-danger-lumma-stealer-malware-exploits-fake-captcha-pages>
<https://www.bitdefender.com/blog/hotforsecurity/lumma-stealer-campaign-targets-league-of-legends-world-championship-fans-through-social-media-ads/>
<https://blog.qualys.com/vulnerabilities-threat-research/2024/10/20/unmasking-lumma-stealer-analyzing-deceptive-tactics-with-fake-captcha>

Last change to this tool card: 24 October 2024

Download this tool card in JSON format

Previous: Luminosity RAT
Next: LUNCHMONEY

All groups using tool LummaC2

ChangedNameCountryObserved

APT groups

     ↳ Subgroup: Scattered Spider[Unknown]2022-Jul 2024X

Other groups

 CoralRaiderVietnam2023-Feb 2024 
 Scully Spider, TA547[Unknown]2017-Mar 2024 

3 groups listed (1 APT, 2 other, 0 unknown)

Digital Service Security Center
Electronic Transactions Development Agency

Follow us on

Facebook Twitter

Report incidents

Telephone +66 (0)2-123-1227
E-mail [email protected]