Get the latest tech news

Authorities carry out global takedown of infostealer used by cybercriminals


Authorities, along with tech companies including Microsoft and Cloudflare, say they’ve disrupted Lumma.

“In 2025, probably following Redline’s disruption and Lumma’s own development, it has ranked as the most active module, indicating its growing popularity and widespread adoption among cybercriminals,” says Victoria Kivilevich, director of threat research at security firm Kela. And Lumma was mentioned in more than 21,000 listings on cybercrime forums in the spring of 2024, according to figures cited in a notice published today by the Federal Bureau of Investigation (FBI) and Cybersecurity and Infrastructure Security Agency (CISA). Law enforcement’s collaboration with Microsoft’s DCU and other tech companies like Cloudflare focused on disrupting Lumma’s infrastructure in multiple ways, so its developers could not simply hire new providers or create parallel systems to rebuild.

Get the Android app

Or read this on ArsTechnica

Read more on:

Photo of authorities

authorities

Photo of cybercriminals

cybercriminals

Photo of global takedown

global takedown

Related news:

News photo

Authorities Carry Out Elaborate Global Takedown of Infostealer Heavily Used by Cybercriminals

News photo

Schools, authorities sound alarm over 'Chromebook Challenge' TikTok trend

News photo

The Cybercriminals Who Organized a $243 Million Crypto Heist