Skip to main content
  1. Home
  2. Computing
  3. News

Heads up — fake Reddit sites are delivering dangerous malware

Add as a preferred source on Google
Fake Reddit thread
Bleeping Computer

Hackers are spreading a dangerous malware called Lumma Stealer by tricking you into clicking on a link in a fake Reddit thread that supposedly solves a problem, as Bleeping Computer reports. After clicking the link, the victims are transferred to a fake WeTransfer site similar to the transfer site’s interface.

Sekoia Researcher crep1x found the total number of distributed sites and even shared a complete list of the participating ones. The sites are nearly 1,000: 529 impersonate Reedit, and 407 pretend to be the official WeTransfer service site. The fake Reddit or WeTransfer site uses a combination of random numbers and characters, the brand name, and either ends with a .org or .net domain.

Recommended Videos

In addition to these options, the hackers use a fake Reddit thread in which the creator asks for help downloading a particular tool. Another user claims to have uploaded the file to WeTransfer and shared=s the link to download it. There is even a thank you message for the help. To possibly add a sense of urgency, the fake user who uploaded the file mentions that the link expires in two days.

The researcher couldn’t tell Bleeping Computer anything about the early stages of the infection but confirmed its expansion. Direct messages on social media, SEO poisoning, malicious websites, and more could be possible starting points for the situation. Unfortunately, it ends with a Lumma Stealer payload hosted on “weighcobbweo[.]top.”

What makes Lumma Stealer so dangerous? Its advanced data theft and evasion mechanisms make it harmful, and hackers use them to spread the virus using methods such as deepfake nude generator sites, GitHub comments, and malvertising. Nevertheless, one way to stay safe is to use one of the best antivirus and be cautious of the links you click on.

Judy Sanhz
Computing Writer
Judy Sanhz is a Digital Trends computing writer covering all computing news. Loves all operating systems and devices.
Meta’s detection tool fails to identify photos generated by its own Muse Image AI
Meta has created an invisible watermarking tool called Content Seal that is embedded in all images generated by the Muse Image AI.
Meta AI identification tool.

Earlier this week, Meta announced two new AI products, namely, Muse Image and Muse Video. As the name suggests, these are generative AI tools for making photos and video clips using natural language text prompts. Soon after their rollout commenced, these tools sparked controversy because Meta had automatically opted in Instagram users, allowing others to use their publicly posted media and convert them into remixed AI content. But it appears that Meta courted another loss on its side of the court.

What's the problem?

Read more
Your Google AI Studio apps can finally have polished, presentable web links
AI Studio web apps can now use personalized subdomains
google ai studio logos

Google AI Studio has made building a web app surprisingly easy. You can describe what you want, refine the design through prompts, and publish the result without setting up a traditional development environment. An awkward point of friction comes after deployment, when the finished app still has to live behind a long, forgettable Cloud Run link.

Google is now cleaning up that final step. AI Studio lets you assign a deployed web app a personalized address under the “ai.studio” domain, such as “your-app-name.ai.studio.” A recognizable URL should make the project look more presentable in a portfolio, client demo, social post, or internal project page.

Read more
You can now check if a Google ad was made using AI
Google will auto-label its own AI ads, but third-party AI ads still rely on advertisers to come clean.
google-ads-ai-label

Ever looked at an ad and wondered if a real person made it or if it was AI generated in seconds? Google is now giving you a way to find out.

The company just announced a new AI transparency label that tells you whether an ad was created or edited using generative AI tools. The label lives inside Google's My Ad Center, and it is rolling out across Google Search, YouTube, and Discover globally.

Read more