Videre til indhold

Blog om Nørd og Fisk

Blog om Nørd og Fisk

Blog om Nørd og Fisk

Lumma stealer on my site ?

Just found a #lummastealer – downloader on my wordpress -but never used because my wordfence stopped it.
Running via a PowerShell script – where it download+run a file named 123.txt
As it’s still a live one : DO NOT run the code!!!
feel free to see the code : https://lnkd.in/dpHpZGKg

Related

Forfatter: Sune Andersen

The owner of the Site ;-) Vis alle indlæg fra Sune Andersen

Forfatter Sune AndersenUdgivet 12. juni 202512. juni 2025Kategorier Nørd / Hakkeri

Indlægsnavigation

Forrige Forrige indlæg: Hjemme fra Danish Fly Festival 2025
Næste Næste indlæg: PMR radio-Analog vs. dPMR vs. DMR

Distrowatch

  • FreeBSD 15.0-BETA5
  • StartOS 0.4.0-alpha12
  • HackerOS 3.6
  • Endless 6.0.8
  • Luberri 25.2
  • Linux Mint creates new troubleshooting tools
  • Kubuntu website off-line due to expired certificate
  • Debian's APT to depend on Rust
  • The Redox team port Servo, htop, and bottom
  • SUSE to include agentic AI in SLE 16

News: Demo Partys

  • Moonshine Dragons 2026: Registration ON
  • PTWeekender 2025: Start Times (updated^2)
  • Comparade 2025: Live Acts Confirmed!
  • Deadline 2025: Music Lineup and Timetable finalized, Party system live, 256b and Animation/Video compos moved to Friday
  • Deadline 2025: Compo Rules and Scheduling - important Announcement
  • Retrograd 2025
  • Dream210
  • Inércia 2025
  • SESSIONS 2025
  • PTWeekender 2025

Exploit-DB

  • [webapps] Flowise 3.0.4 - Remote Code Execution (RCE)
  • [webapps] Casdoor 2.95.0 - Cross-Site Request Forgery (CSRF)
  • [local] Mbed TLS 3.6.4 - Use-After-Free
  • [webapps] Concrete CMS 9.4.3 - Stored XSS
  • [webapps] XWiki Platform 15.10.10 - Metasploit Module for Remote Code Execution (RCE)

Security Week

  • In Other News: Controversial Ransomware Report, Gootloader Returns, More AN0M Arrests
  • Landfall Android Spyware Targeted Samsung Phones via Zero-Day
  • Radical Empowerment From Your Leadership: Understood by Few, Essential for All
  • Data Exposure Vulnerability Found in Deep Learning Tool Keras
  • ClickFix Attacks Against macOS Users Evolving
Blog om Nørd og Fisk Drevet af WordPress