Cybersecurity
Lunex Stealer Abuses AMD Driver to Disable Security Monitoring and Steal Browser Credentials
Lunex uses BYOVD to disable kernel security callbacks before stealing browser credentials and cryptocurrency wallets.
AI Summary
The Psychedelic Stealer malware, delivered through compromised Ukrainian websites that employ ClickFix‑style Cloudflare verification checks, is a component of the Lunex malware‑as‑a‑service platform. Researchers at Ontinue identified the campaign as a four‑stage attack chain specifically aimed at Ukrainian‑speaking users. The operation leverages the compromised sites to distribute the stealer, which is part of the broader Lunex suite.
AI summaries can be wrong sometimes—always verify important details using the source article.
How AI & Automation are usedMore from Cybersecurity
Continue reading recent Cybersecurity coverage
- ShinyHunters uses WAF bypass trick in Oracle PeopleSoft attacksContinue reading
- China and US Agree to Establish AI Safety Channel and Continue Trade and Military TalksContinue reading
- Claude Opus 5.5 uses 95% fewer em dashes, but its answers are getting longerContinue reading
- Microsoft pauses KB5002907 update after Office license deactivationsContinue reading
Support HappeningNow
Independent AI-powered news analysis is reader-supported. Your contribution helps cover infrastructure, summaries, and continued platform development.
Support HappeningNow