ACRStealer Infostealer Exploiting Google Docs as C2

ACRStealer Infostealer Exploiting Google Docs as C2

AhnLab SEcurity intelligence Center (ASEC) monitors the Infostealer malware disguised as illegal programs such as cracks and keygens being distributed, and publishes related trends and changes through the Ahnlab TIP and ASEC Blog posts. While the majority of the malware distributed in this manner has been the LummaC2 Infostealer, the

Distribution of LummaC2 Infostealer Based on Legitimate Programs

Distribution of LummaC2 Infostealer Based on Legitimate Programs

LummaC2 is an Infostealer actively being distributed while being disguised as illegal software such as cracks, and its distribution and creation methods are changing continuously. It has recently been distributed by being inserted into legitimate programs, so caution is needed.   Figure 1. Malware distribution page examples   When LummaC2