Threats Tagged 'lummastealer'
View all threats tagged with 'lummastealer'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'lummastealer'
Click on any threat for detailed analysis and mitigation recommendations
From ClickFix to MaaS: Exposing a Modular Windows RAT and Its Admin Panel 0 A modular Windows remote access Trojan (RAT) campaign, named ClickFix, targets Windows users via malicious MSI installers. The malware is NodeJS-based and uses dynamic in-memory loading of core modules and communication protocols after connecting to its command-and-control (C2) server. It employs gRPC streaming over the Tor network to maintain persistent and masked bidirectional communication channels. An operational security failure exposed the malware's admin panel protocol, revealing a malware-as-a-service (MaaS) backend that manages multiple operators and automates cryptocurrency asset tracking. The RAT supports full functionality including shell command execution and wallet tracking, while evading static signature detection through dynamic code execution. Join the discussion | AlienVault OTX General | 08/19/2026, 11:25:09 UTC Added: 08/19/2026, 15:52:33 UTC |
Showing 1 to 1 of 1 result