Wednesday, April 22, 2026
  • About Web3Wire
  • Web3Wire NFTs
  • .w3w TLD
  • $W3W Token
  • Web3Wire DAO
  • Media Network
  • RSS Feed
  • Contact Us
Web3Wire
No Result
View All Result
  • Home
  • Web3
    • Latest
    • AI
    • Business
    • Blockchain
    • Cryptocurrencies
    • Decentralized Finance
    • Metaverse
    • Non-Fungible Token
    • Press Release
  • Technology
    • Consumer Tech
    • Digital Fashion
    • Editor’s Choice
    • Guides
    • Stories
  • Coins
    • Top 10 Coins
    • Top 50 Coins
    • Top 100 Coins
    • All Coins
  • Exchanges
    • Top 10 Crypto Exchanges
    • Top 50 Crypto Exchanges
    • Top 100 Crypto Exchanges
    • All Crypto Exchanges
  • Stocks
    • Blockchain Stocks
    • NFT Stocks
    • Metaverse Stocks
    • Artificial Intelligence Stocks
  • Events
  • News
    • Latest Crypto News
    • Latest DeFi News
    • Latest Web3 News
  • Home
  • Web3
    • Latest
    • AI
    • Business
    • Blockchain
    • Cryptocurrencies
    • Decentralized Finance
    • Metaverse
    • Non-Fungible Token
    • Press Release
  • Technology
    • Consumer Tech
    • Digital Fashion
    • Editor’s Choice
    • Guides
    • Stories
  • Coins
    • Top 10 Coins
    • Top 50 Coins
    • Top 100 Coins
    • All Coins
  • Exchanges
    • Top 10 Crypto Exchanges
    • Top 50 Crypto Exchanges
    • Top 100 Crypto Exchanges
    • All Crypto Exchanges
  • Stocks
    • Blockchain Stocks
    • NFT Stocks
    • Metaverse Stocks
    • Artificial Intelligence Stocks
  • Events
  • News
    • Latest Crypto News
    • Latest DeFi News
    • Latest Web3 News
No Result
View All Result
Web3Wire
No Result
View All Result
Home Artificial Intelligence

ESET takes part in global operation to disrupt Lumma Stealer, one of the most prevalent infostealers

May 22, 2025
in Artificial Intelligence, GlobeNewswire, Web3
Reading Time: 7 mins read
5
SHARES
245
VIEWS
Share on TwitterShare on LinkedInShare on Facebook
  • ESET took part in a globally coordinated operation to disrupt Lumma Stealer.
  • The operation, led by Microsoft, targeted Lumma Stealer infrastructure, including all known C&C servers from the past year, making the botnet, in large part, inoperative.
  • Lumma Stealer has been one of the most prevalent infostealers over the past two years.
  • ESET provided both technical analysis and statistical information, and extracted essential data from tens of thousands of samples, as Lumma Stealer developers had been actively developing and maintaining the malware.

PRAGUE and BRATISLAVA, Slovakia, May 21, 2025 (GLOBE NEWSWIRE) — ESET has collaborated with Microsoft, BitSight, Lumen, Cloudflare, CleanDNS, and GMO Registry in a global disruption operation against Lumma Stealer, an infamous Malware-as-a-Service infostealer. The operation targeted Lumma Stealer infrastructure, specifically all known C&C servers of the past year, making the botnet, in large part, inoperative.

“ESET automated systems processed tens of thousands of Lumma Stealer samples, dissecting them to extract key elements, such as C&C servers and affiliate identifiers. This allowed us to continuously monitor Lumma Stealer’s activity, cluster affiliates, keep track of development updates, and more,” says ESET researcher Jakub Tomanek, who monitors and investigates Lumma Stealer. “Infostealer malware families, like Lumma Stealer, are typically just a foreshadowing of future, much more devastating attacks. Harvested credentials are a valued commodity in the cybercrime underworld, sold by initial access brokers to various other cybercriminals, including ransomware affiliates,” adds Tomanek. Lumma Stealer has been one of the most prevalent infostealers over the past two years, leaving no part of the world untouched.

Lumma Stealer developers had been actively developing and maintaining the malware. ESET has regularly spotted code updates ranging from minor bugfixes to complete replacement of string encryption and updates to the network protocol. The operators of the botnet also actively maintained the shared network infrastructure. Between 17 June 2024 and 1 May 2025, ESET observed a total of 3,353 unique C&C domains, with an approximate average of 74 new domains emerging each week, including occasional updates to Telegram-based dead drop resolvers. This ongoing evolution underscores the significant threat posed by Lumma Stealer and highlights the importance of the disruption efforts.

Lumma Stealer adopts the concept of malware as a service, where affiliates pay a monthly fee based on their tier to receive the latest malware builds and the network infrastructure necessary for data exfiltration. The tiered subscription model features price ranges from $250 to $1000 per month, each with increasingly sophisticated features. The operators of Lumma Stealer have also created a Telegram marketplace for affiliates, with a rating system to sell stolen data without intermediaries. Common distribution methods include phishing, cracked software, and other malware downloaders. Lumma Stealer employs a few, but effective, anti-emulation techniques that make analysis as complicated as possible. These techniques are designed to evade detection and hinder the efforts of security analysts.

Microsoft’s Digital Crimes Unit has facilitated the takedown, suspension, seizure, and blocking of the malicious domains that formed the backbone of Lumma Stealer’s infrastructure via a court order granted by the United States District Court of the Northern District of Georgia. In coordination, the U.S. Department of Justice simultaneously also seized the Lumma Stealer control panel, targeting the Lumma Stealer marketplace – and in turn the purchasers of Lumma Stealer malware. This was coordinated with Europol’s European Cybercrime Center (EC3) as well as Japan’s Cybercrime Control Center (JC3), which facilitated the suspension of locally based Lumma Stealer infrastructure.

“This global disruption operation was made possible by our long-term tracking of Lumma Stealer. The disruption operation led by Microsoft aimed to seize all known Lumma Stealer C&C domains, making the exfiltration infrastructure of Lumma Stealer non-functional. However, ESET will continue to track other infostealers while closely monitoring for Lumma Stealer activity following this disruption operation,” concludes Tomanek.

For an overview of the Lumma Stealer ecosystem and both a technical analysis and look at the evolution of Lumma Stealer’s key static and dynamic properties critical to the disruption effort, check out the latest ESET Research blogpost, “ESET takes part in global operation to disrupt Lumma Stealer” on WeLiveSecurity.com. Make sure to follow ESET Research on Twitter (today known as X), Bluesky, and Mastodon for the latest news from ESET Research.

Lumma Stealer detection rate based on ESET telemetry (data since July 2024)

Lumma Stealer detection rate based on ESET telemetry (data since July 2024)

About ESET
ESET® provides cutting-edge digital security to prevent attacks before they happen. By combining the power of AI and human expertise, ESET stays ahead of emerging global cyberthreats, both known and unknown — securing businesses, critical infrastructure, and individuals. Whether it’s endpoint, cloud, or mobile protection, our AI-native, cloud-first solutions and services remain highly effective and easy to use. ESET technology includes robust detection and response, ultra-secure encryption, and multifactor authentication. With 24/7 real-time defense and strong local support, we keep users safe and businesses running without interruption. The ever-evolving digital landscape demands a progressive approach to security: ESET is committed to world-class research and powerful threat intelligence, backed by R&D centers and a strong global partner network. For more information, visit http://www.eset.com or follow our social media, podcasts, and blogs.

A photo accompanying this announcement is available at https://www.globenewswire.com/NewsRoom/AttachmentNg/3e248b2b-dcbf-42cb-93ac-a4b4668bbc31

About Web3Wire
Web3Wire – Information, news, press releases, events and research articles about Web3, Metaverse, Blockchain, Artificial Intelligence, Cryptocurrencies, Decentralized Finance, NFTs and Gaming.
Visit Web3Wire for Web3 News and Events, Block3Wire for the latest Blockchain news and Meta3Wire to stay updated with Metaverse News.
ShareTweet1ShareSendShare2
Previous Post

Best Online Roulette Florida: Wild Casino Chosen as The Top Roulette FL Site

Next Post

Best Betting Apps in Texas – BetWhale Picked As the Top TX Sportsbook Mobile App

Related Posts

Tredence Awarded 2026 Google Cloud Global Industry Solutions Partner of the Year Award for Retail

Trusted for driving the data & AI strategy for 8 of the top 10 retailers, powering $2 trillion in retail revenueLAS VEGAS and BENGALURU, India, April 21, 2026 /PRNewswire/ -- Tredence, a global AI and data science solutions company, today announced it has been named the 2026 Google Cloud Services...

Read moreDetails

Adswerve Named 2026 Adobe Customer Experience Orchestration Emerging Partner of the Year, Americas, for Third Consecutive Year

DENVER, April 21, 2026 (GLOBE NEWSWIRE) -- Adswerve, a leading data, analytics, media, and technology consultancy who helps create positive business impact, today announced it has been recognized as the Adobe Customer Experience Orchestration (CXO) Emerging Partner of the Year, Americas, for the third consecutive year. Adobe's CXO Partner Awards...

Read moreDetails

Society Pass Incorporated (Nasdaq: SOPA) Nasdaq delinquency notification letter (the “Notice”)

NEW YORK, April 21, 2026 (GLOBE NEWSWIRE) -- Society Pass Incorporated (Nasdaq: SOPA) (the “Company”), Southeast Asia’s (SEA) next generation e-commerce ecosystem announced the received notice of delinquency letter from Nasdaq. On April 16, 2026, Society Pass Incorporated (the “Company”) received a delinquency notification letter (the “Notice”) from the Listing Qualifications...

Read moreDetails

NowVertical Group Wins 2026 Google Cloud Data & Analytics Partner of the Year for Latin America

TORONTO, April 21, 2026 (GLOBE NEWSWIRE) -- NowVertical Group Inc. (TSXV: NOW) (“NowVertical” or the “Company”), a data and AI solutions and services provider, announced today that it has received the 2026 Google Cloud Data & Analytics Partner of the Year award for Latin America. The recognition marks the second consecutive...

Read moreDetails

Veeco Announces Date for First Quarter 2026 Financial Results and Conference Call

PLAINVIEW, N.Y., April 21, 2026 (GLOBE NEWSWIRE) -- Veeco Instruments Inc. (NASDAQ: VECO) plans to release its first quarter 2026 financial results after the market closes on Tuesday, May 5, 2026. The company will host a conference call to review these results starting at 5:00 PM ET that day. To...

Read moreDetails

Zscaler Wins 2026 Google Cloud Partner of the Year Award for Security in the Application Category

SAN JOSE, Calif., April 21, 2026 (GLOBE NEWSWIRE) -- Zscaler, Inc. (NASDAQ: ZS), the leader in cloud security, announced today that it has received the 2026 Google Cloud Partner of the Year Award for Security in the Application category. The Zscaler Zero Trust Exchange™ platform and Google’s AI-powered infrastructure provide...

Read moreDetails

BlackLine Announces Date for First Quarter 2026 Earnings Release and Conference Call

LOS ANGELES, April 21, 2026 (GLOBE NEWSWIRE) -- BlackLine, Inc. (Nasdaq: BL) announced today that it will release financial results for the first quarter ended March 31, 2026 after market close on Tuesday, May 5, 2026 followed by a conference call hosted by management at 2:00 p.m. PT / 5:00 p.m. ET. A...

Read moreDetails

AvePoint to Announce First Quarter 2026 Financial Results on May 7

JERSEY CITY, N.J., April 21, 2026 (GLOBE NEWSWIRE) -- AvePoint (Nasdaq: AVPT; SGX: AVP), the global leader in AI data protection, unifying data security, governance, and resilience, will report its first quarter 2026 financial results after the US financial markets close on Thursday, May 7, 2026. The Company will host a...

Read moreDetails

NewHydrogen Completes Critical Pre-Pilot Plant Technical Validation 

The Company greenlights construction of a ThermoLoop engineering test unit to define commercial pilot plant specifications SANTA CLARITA, Calif., April 21, 2026 (GLOBE NEWSWIRE) -- NewHydrogen, Inc. (OTCQB: NEWH), the developer of ThermoLoop™, a breakthrough technology that uses water and heat instead of electricity to produce the world’s cheapest clean...

Read moreDetails

The System Missing Between Field Operations and Finance Is Here

WARWICK, N.Y., April 21, 2026 (GLOBE NEWSWIRE) -- Passport Workforce® introduced a new approach to managing the flow of labor data between field operations, payroll, finance, and job costing systems, addressing a long-standing gap in how enterprise field organizations manage labor data. Enterprise field operations have long relied on disconnected...

Read moreDetails
Web3Wire NFTs - The Web3 Collective

Web3Wire, $W3W Token and .w3w tld Whitepaper

Web3Wire, $W3W Token and .w3w tld Whitepaper

Claim your space in Web3 with .w3w Domain!

Web3Wire

Trending on Web3Wire

  • FlipHTML5’s Flipbook Maker Creates Interactive Digital Publications Easily

    8 shares
    Share 3 Tweet 2
  • Discover 2025’s Top 5 Promising Low-Cap Crypto Gems

    97 shares
    Share 39 Tweet 24
  • Unifying Blockchain Ecosystems: 2024 Guide to Cross-Chain Interoperability

    159 shares
    Share 64 Tweet 40
  • A1 Data Center Transforms Former Glass Factory Into Power-Driven Innovation Campus in Millville, New Jersey

    7 shares
    Share 3 Tweet 2
  • Understanding Soulbound Tokens SBT Their Definition and Significance

    53 shares
    Share 21 Tweet 13
Join our Web3Wire Community!

Our newsletters are only twice a month, reaching around 10000+ Blockchain Companies, 800 Web3 VCs, 600 Blockchain Journalists and Media Houses.


* We wont pass your details on to anyone else and we hate spam as much as you do. By clicking the signup button you agree to our Terms of Use and Privacy Policy.

Web3Wire Podcasts

Upcoming Events

There are currently no events.

Latest on Web3Wire

  • ShopView Launches Customer Portal for Heavy-Duty Repair Shops, Reducing Admin Time and Accelerating Payment Cycles
  • Immutable Holdings Announces Director Resignation
  • Tredence Awarded 2026 Google Cloud Global Industry Solutions Partner of the Year Award for Retail
  • Adswerve Named 2026 Adobe Customer Experience Orchestration Emerging Partner of the Year, Americas, for Third Consecutive Year
  • Society Pass Incorporated (Nasdaq: SOPA) Nasdaq delinquency notification letter (the “Notice”)

RSS Latest on Block3Wire

  • The Algorithmic Monographs: A Five-Volume Civil Code for the Age of Autonomous Intelligence
  • Ali Sadhik Shaik: Practitioner, Scholar, and Author – Focused on the Governance of Intelligent Systems
  • The Klyrox Protocol: A Decentralized Framework to Close the AI Accountability Gap
  • Covo Finance: Revolutionary Crypto Leverage Trading Platform
  • WorldStrides and HEX Announce Partnership to Offer High School and University Students Innovative Courses Designed to Improve Their Outlook in the Digital Age

RSS Latest on Meta3Wire

  • The Algorithmic Monographs: A Five-Volume Civil Code for the Age of Autonomous Intelligence
  • Ali Sadhik Shaik: Practitioner, Scholar, and Author – Focused on the Governance of Intelligent Systems
  • The Klyrox Protocol: A Decentralized Framework to Close the AI Accountability Gap
  • Thumbtack Honored as a 2023 Transform Awards Winner
  • Accenture Invests in Looking Glass to Accelerate Shift from 2D to 3D
Web3Wire

Web3Wire is your go-to source for the latest insights and updates in Web3, Metaverse, Blockchain, AI, Cryptocurrencies, DeFi, NFTs, and Gaming. We provide comprehensive coverage through news, press releases, event updates, and research articles, keeping you informed about the rapidly evolving digital world.

  • About Web3Wire
  • Founder’s Note
  • Web3Wire NFTs – The Web3 Collective
  • .w3w TLD
  • $W3W Token
  • Web3Wire DAO
  • Event Partners
  • Community Partners
  • Our Media Network
  • Media Kit
  • RSS Feeds
  • Contact Us

Crypto Coins

  • Top 10 Coins
  • Top 50 Coins
  • Top 100 Coins
  • All Coins – Marketcap
  • Crypto Coins Heatmap

Crypto Exchanges

  • Top 10 Exchanges
  • Top 50 Exchanges
  • Top 100 Exchanges
  • All Crypto Exchanges

Crypto Stocks

  • Blockchain Stocks
  • NFT Stocks
  • Metaverse Stocks
  • Artificial Intelligence Stocks

Web3Wire Whitepaper | Tokenomics

Web3 Resources

  • Top Web3 and Crypto Youtube Channels
  • Latest Crypto News
  • Latest DeFi News
  • Latest Web3 News

Blockchain Resources

  • Blockchain and Web3 Resources
  • Decentralized Finance (DeFi) – Research Reports
  • All Crypto Whitepapers

Metaverse Resources

  • AR VR and Metaverse Resources
  • Metaverse Courses
Claim your space in Web3 with .w3w!

The Klyrox Protocol | The Algorithmic Monographs

Top 50 Web3 Blogs and Websites
Web3Wire Podcast on Spotify Web3Wire Podcast on Amazon Music 
Web3Wire - Web3 and Blockchain - News, Events and Press Releases | Product Hunt
Web3Wire on Google News

Media Portfolio: Block3Wire | Meta3Wire

  • Privacy Policy
  • Terms of Use
  • Disclaimer
  • Sitemap
  • For Search Engines
  • Crypto Sitemap
  • Exchanges Sitemap

© 2024 Web3Wire. We strongly recommend our readers to DYOR, before investing in any cryptocurrencies, blockchain projects, or ICOs, particularly those that guarantee profits.

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In

Add New Playlist

No Result
View All Result
  • Coins
    • Top 10 Cryptocurrencies
    • Top 50 Cryptocurrencies
    • Top 100 Cryptocurrencies
    • All Coins
  • Exchanges
    • Top 10 Cryptocurrency Exchanges
    • Top 50 Cryptocurrency Exchanges
    • Top 100 Cryptocurrency Exchanges
    • All Crypto Exchanges
  • Stocks
    • Blockchain Stocks
    • NFT Stocks
    • Metaverse Stocks
    • Artificial Intelligence Stocks

© 2024 Web3Wire. We strongly recommend our readers to DYOR, before investing in any cryptocurrencies, blockchain projects, or ICOs, particularly those that guarantee profits.

This website uses cookies. By continuing to use this website you are giving consent to cookies being used. Visit our Privacy and Cookie Policy.