Potential Lumma Stealer PowerShell Pattern

Rule Info

Name
Potential Lumma Stealer PowerShell Pattern
Author
Florian Roth
Description
Detects process command line pattern of the Lumma Stealer malware family.
Date
2024-09-21 00:00:00
Modified
None
Id
d8918d4f-b0e2-411c-a0f8-3a944f018956
Tags
attack.execution attack.t1204
Type
Nextron Sigma feed only (private)

Rule History