7 December 2025
bitcoin
Bitcoin (BTC) 76,697.72 0.67%.
Ethereum
Ethereum (ETH) 2,590.72 1.14%.
xrp
XRP (XRP) 1.75 0.47%.
bnb
BNB (BNB) 763.96 0.56%.
Solana
Left (LEFT) 112.55 1.74%.
dogecoin
Dogecoin (DOGE) 0.119057 1.01%.
cardano
Cardano (ADA) 0.3623 1.43%.
chainlink
Chainlink (LINK) 11.64 2.53%.
Bitcoin-cash
Bitcoin Cash (BCH) 498.50 0.87%.
Litecoin
Litecoin (LTC) 69.79 0.36%.
polkadot
Polka dots (DOT) 1.81 1.05%.
dai
Dai (DAI) 0.858586 0.04%.
pepper
Pepe (PEPE) 0.000004 0.54%.
ethereum-classic
Ethereum Classic (ETC) 11.21 1.88%.
Monero
Monero (XMR) 318.85 5.07%.
international action breaks lummac2 major blow to crypto malware network

International Action Breaks Lummac2: Major Blow to Crypto Malware Network

Reading time: 2 minutes

Recent law enforcement actions have taken a heavy toll on the key infrastructure of LummaC2, a malicious software operation that targeted millions of victims worldwide, with most of the victims being crypto wallet seed phrases were not secure. The U.S. Department of Justice announcement makes clear that a coordinated, international effort involving Europol, Japan’s Cybercrime Control Center, and Microsoft led to these significant seizures.

It all started on May 19, when the DOJ seized two websites. Lumma’s administrators quickly attempted to set up new domains, but they were seized the next day. Microsoft recorded over 394.000 infections on Windows systems worldwide between March and May 2025, and through a lawsuit, its Digital Crimes Unit has shut down over 2.300 domains that were supporting Lumma infrastructure.

“Malware like LummaC2 is designed to steal sensitive information, such as login credentials, from millions of victims, facilitating a range of crimes, including fraudulent bank transfers and theft of cryptocurrency,” said Matthew R. Galeotti, chief of the DOJ’s Criminal Division.

Reduction of malware can be seen

It seems like malware is losing its shine. 2025 Global Threat Report from CrowdStrike shows that attackers are increasingly focusing on malware-free attacks. Over the past five years, they have shifted their strategies to methods such as phishing, social engineering, and trust abuse. By 2022, the share of malware-free attacks will have increased to 79%, up from 2019% in 40.

That said, there’s still a market for malware-as-a-service tools like Lumma. The FBI has identified Lumma in over 1,7 million attempted thefts. Crypto wallets remain particularly vulnerable; earlier this month, researchers pointed to rogue AI bots spreading malware , and the recently identified Inferno Drainer has stolen over $9 million worth of crypto from wallets in the past six months.

Evolution of Theft by Lumma

Launched around 2022, Lumma has evolved through multiple versions under the tutelage of a Russian developer known online as “Shamel.” This hacker presents Lumma via Telegram and Russian forums, where he offers tiered service packages, allowing buyers to customize their attacks and track stolen information.

One of the most notable campaigns involved fake emails posing as Booking.com, which attempted to steal login credentials and bank accounts. Lumma has also made its mark in the education sector, gaming communities, and critical infrastructures including healthcare and logistics. Due to its stealth and flexibility, Lumma is a popular tool among high-level ransomware groups such as Octo Tempest.

Microsoft is closely monitoring emerging variants of Lumma, and warns that the malware remains a persistent threat despite the breakdown of its core infrastructure.

“Keep your crypto safe, because the digital world remains a playing field for both forward-thinking innovations and unforeseen dangers!”

Frequently Asked Questions

What exactly is LummaC2?
LummaC2 is a malware operation designed to steal sensitive information such as login credentials and crypto wallet seed phrases from victims worldwide.

How does law enforcement respond to these threats?
International cooperation has resulted in significant seizures of infrastructure used by LummaC2, involving the DOJ and Europol, among others.

What are the latest trends in cybercrime?
Cybercriminals are increasingly shifting to malware-free attacks, using techniques such as phishing and social manipulation to dupe victims.

Share this article:
Mail EED 468X60@2x
Disclaimer: The information on Block 9 is for general informational and educational purposes only. While we strive to provide up-to-date, correct and relevant content, we make no warranties as to the completeness, accuracy or reliability of the information provided. All content on this website, including articles, analyses, opinions and other publications, is for general information purposes only and does not constitute professional or legal advice in any way, including but not limited to financial, investment or tax advice.

Block 9 makes no guarantees or representations as to any possible results or returns that may arise from the use of information on this website. Nothing on this website should be interpreted as a recommendation to buy, sell or hold any particular asset, including but not limited to cryptocurrencies, tokens or other financial instruments.

The opinions and views expressed in contributions by editors, external authors or community members are strictly personal and do not necessarily represent the views or policies of Block 9 as a platform. Block 9 accepts no liability for any loss or damage – direct or indirect – resulting from the use of (or reliance on) the information published on this website.

Investing in cryptocurrencies and other digital assets involves significant risks. The value of such assets can fluctuate significantly, and there is a chance that you could lose (some of) your investment. We strongly recommend that you always do your own research (DYOR) and seek independent advice from a qualified financial advisor before making any financial decisions. By using this website, you agree to this disclaimer and accept that Block 9 is not responsible for your investment choices or the results thereof.
Smart insiders are reading along – are you too?
Don't miss an update, sign up for our newsletter.
bitcoin
bitcoin

Bitcoin (BTC)

Pricing
76,697.72
Ethereum
Ethereum

Ethereum (ETH)

Pricing
2,590.72
xrp
xrp

XRP (XRP)

Pricing
1.75
Connect with Block #9
block9news
1K+ Followers
🤳 Become a Fan
@block9news
1K+ Followers
📸 Follow Us
@block9news
1K+ Followers
📸 Follow Us

Not to be missed:

Ethereum's Unique Scarcity on Exchanges: Potential Price Surges Ahead?
Bitcoin vs. Tulip Mania: Why the Digital Currency Refutes the Historical Comparison
Procap BTC and Columbus Circle Merging: A New Direction for Bitcoin Investments?
Belgian Entrepreneurs Remain Concerned About BPost's Collaboration With Chinese Webshop Temu
Stay smartly informed
The future doesn’t wait – always stay one step ahead and receive the latest news, exclusive updates and key insights directly to your inbox. Sign up for our newsletter and stay ahead.
Copyright © 2025
Redwind BV