Videre til indhold

Blog om Nørd og Fisk

Blog om Nørd og Fisk

Blog om Nørd og Fisk

Lumma stealer on my site ?

Just found a #lummastealer – downloader on my wordpress -but never used because my wordfence stopped it.
Running via a PowerShell script – where it download+run a file named 123.txt
As it’s still a live one : DO NOT run the code!!!
feel free to see the code : https://lnkd.in/dpHpZGKg

Related

Forfatter: Sune Andersen

The owner of the Site ;-) Vis alle indlæg fra Sune Andersen

Forfatter Sune AndersenUdgivet 12. juni 202512. juni 2025Kategorier Nørd / Hakkeri

Indlægsnavigation

Forrige Forrige indlæg: Hjemme fra Danish Fly Festival 2025
Næste Næste indlæg: PMR radio-Analog vs. dPMR vs. DMR

Distrowatch

  • PikaOS 26.01.24
  • MagOS 20260123
  • CachyOS 260124
  • AfagOS 20260124
  • Skywave 5.10.0
  • postmarketOS introduces new automated quality assurance tests
  • Attackers find new way to share malicious Snap packages
  • Synex introduces ZFS support at install time
  • Haiku streamlines booting with EFI partitions
  • Redcore streamlines three branches down to two

News: Demo Partys

  • On demoparty.net as a wiki
  • ROMA.EXE 2026: Pre-registration form
  • Dream210: Party System now open for remote submissions
  • Transmission64 2025: Entry submission now open!
  • PTWeekender 2025: DJ set winner
  • Speccy.PL Party 2026
  • Berlin Demoscene Meeting April 2026
  • Lahti Copy-Party 2026
  • Multimatograf 2026
  • Jumalauta Winterfärjan 2026

Exploit-DB

  • [webapps] Siklu EtherHaul Series EH-8010 - Remote Command Execution
  • [webapps] Siklu EtherHaul Series EH-8010 - Arbitrary File Upload
  • [webapps] RPi-Jukebox-RFID 2.8.0 - Remote Command Execution
  • [webapps] FreeBSD rtsold 15.x - Remote Code Execution via DNSSL
  • [webapps] Chained Quiz 1.3.5 - Unauthenticated Insecure Direct Object Reference via Cookie

Security Week

  • Nike Probing Potential Security Incident as Hackers Threaten to Leak Data
  • Fortinet Confirms FortiCloud SSO Exploitation Against Patched Devices
  • In Other News: €1.2B GDPR Fines, Net-NTLMv1 Rainbow Tables, Rockwell Security Notice
  • Phishers Abuse SharePoint in New Campaign Targeting Energy Sector
  • Cyber Insights 2026: Regulations and the Tangled Mess of Compliance Requirements
Blog om Nørd og Fisk Drevet af WordPress