Skip to content

Microsoft, Global Law Enforcement Disrupt Major Infostealer Operation

Microsoft and global law enforcement team up to take down Lumma, a notorious infostealer. The operation highlights the importance of international cooperation in fighting cybercrime.

In this image, we can see an advertisement contains robots and some text.
In this image, we can see an advertisement contains robots and some text.

Microsoft, Global Law Enforcement Disrupt Major Infostealer Operation

Microsoft, in collaboration with global law enforcement agencies, has successfully disrupted a significant infostealer operation. The US Department of Justice seized the control panel of Lumma, a notorious infostealer, hindering its developers' ability to rent out its infrastructure.

The operation, involving Microsoft, Europol, Japan's JC3, and US operatives, led to the suspension and blocking of over 2300 domains supporting Lumma's infrastructure. Over 1300 domains were redirected to Microsoft sinkholes to provide actionable intelligence for security hardening and threat tracking. Other cybersecurity and tech firms involved include Cloudflare, ESET, Bitsight, Lumen, and CleanDNS.

Lumma, developed and distributed by a threat actor known as 'Shamel' or 'Lumma,' is sold as a subscription-based service on dark web forums and a Telegram channel. It impersonates trusted brands and is deployed via spear-phishing emails and malvertising. Between March 16 and May 16, over 394,000 Windows computers worldwide were infected with Lumma Stealer malware.

Infostealers like Lumma are increasingly foundational to today's cybercrime supply chain, providing threat actors with stolen credentials for targeting sensitive systems. A recent Gigamon study found that 55% of organizations suffered a hybrid cloud breach last year, highlighting the need for robust security measures.

The successful disruption of Lumma's infrastructure is a significant blow to cybercriminals relying on infostealers. Microsoft's collaborative effort with global law enforcement agencies has demonstrated the importance of international cooperation in combating cybercrime. As infostealers continue to pose a threat, organizations must remain vigilant and invest in robust security measures to protect against evolving cyber threats.

Read also:

Latest