
From Fake CAPTCHA to Hidden Desktop: Unpacking CastleRAT and Operation Device Manager
Reading Time: 8 minsNew research from Lumu CTI dissects how TAG-150’s CastleRAT abuses ClickFix, Ethereum, and Steam to bypass enterprise defenses.
Already have an account? Sign in
Sign in
Get the latest cybersecurity articles and insights straight from the experts.

Reading Time: 8 minsNew research from Lumu CTI dissects how TAG-150’s CastleRAT abuses ClickFix, Ethereum, and Steam to bypass enterprise defenses.

Reading Time: 9 minsCybercriminals now use SEO poisoning to bypass email defenses. Discover the evasive tactics behind payment gateway fraud and how to stop them.

Reading Time: 4 minsThe FortiBleed campaign has exposed 75,000 Fortinet firewalls. Discover why password complexity failed and how to secure your network immediately.

Reading Time: 9 minsIranian threat actor MuddyWater has adopted new strategies to evade security and target global infrastructure. What lessons can we learn for our defenses?

Reading Time: 5 minsCybercriminals are using AI today to accelerate attacks through deepfakes, smishing, exploit generation, and autonomous breach activity. This blog explores how AI is reshaping offensive cyber operations and what defenders must prioritize.

Reading Time: 7 minsHow does the 2026 Remcos RAT bypass your security to stream live surveillance? Understand the latest campaign and how to protect your enterprise.

Reading Time: 4 minsManual MISP management creates a resource drain that risks business outages. It is essential to automate this intelligence to secure your financial organization.

Reading Time: 6 minsAI-powered autonomous malware now generates unique threats at machine speed. This makes the transition from human-led to automated defense urgent.

Reading Time: 6 minsAsyncRAT is an adaptable open-source Trojan that has evolved into a global threat. We look at how it works and the best way to defend against it.

Reading Time: 10 minsThis technical deep-dive analyzes a sophisticated Amadey Stealer campaign leveraging Living-off-the-Land tactics and defense evasion, identified through Lumu’s network behavior analysis.

Reading Time: 5 minsDeathRansom ransomware has evolved, hiding in malicious PDFs to bypass defenses. It does not break down the door. It is invited in.

Reading Time: 5 minsYour security stack is built on trusting domain reputation scores. But attackers now weaponize malicious domain detection methods against you.

Reading Time: 6 minsOur analysis of APT-C-36, Blind Eagle, breaks down how a regional phishing attack becomes a global supply chain threat, providing insights for your proactive defense.

Reading Time: 6 minsFresh from DEFCON 33, Lumu’s Mario Lobo identifies a revolutionary shift in AI-driven attacks that is changing the rules for cyber defenders and their tools.

Reading Time: 6 minsBumbleBee malware facilitates severe attacks like ransomware or data theft. Threat intelligence shows increasing deployment across key industries and locations.