Detected Lumma malware that can take control of Google accounts.

VNZ-EN

Administrator
Staff member
Vn-Z.vn November 23, 2023, According to cybersecurity expert Alon Gal from security company Hudson Rock, this expert has discovered malware called Lumma (also known as LummaC2 ), this software can help hackers restore expired Google cookies, thereby taking control of Google accounts.



Ban-sao-Lumma-dev.jpeg




Session cookies are a special type of cookie used on the internet, helping users maintain logged in status for a certain period of time. Both websites and browsers limit the duration of cookies to ensure security and prevent abuse.


Lumma malware can use keys in the recovery file to recreate expired cookies that currently only apply to Google cookies, but this process can only happen once and each key is unique. Can be used twice.


Hacker uses a subscription model, with a monthly fee of $1,000. Currently, this malware has not been verified by security researchers or Google. However, Rhadamanthys, a hacker involved in using Lumma, announced similar recently updated features of Lumma.



Ban-sao-Lumma-hack-cookie-Google.jpeg




Lumma's development team has released the update and claims that it is an additional fix to overcome the new restrictions that Google has put in place to prevent cookie recovery.




Ban-sao-Luma-update.jpeg




1.Update 11.11 1. Fixed Google logs (Google has introduced some restrictions on updated tokens)

2. Fixed an error with a large number of neighbors in user statistics

3.Improved the performance of statistics calculation

4. Fixed a bug with empty filters on the log viewing page Create correspondence without encryption


News of Lumma's attempt to circumvent new restrictions from Google to prevent cookie recovery also raises concerns about continued improper activity and potential Google account security risks for users. use.
 
Top Bottom