Hackers have found yet another way to distribute the Lumma Stealer through infected CAPTCHA verification pages, leading users to download malicious payloads unknowingly.
The multi-stage attack involves using PowerShell commands and legitimate Windows utilities like mshta.exe to execute hidden malicious scripts that exfiltrate sensitive information.
Collection
[
|
...
]