BTCC / BTCC Square / Global Cryptocurrency /
New Malware Posing as CAPTCHA Targets Crypto Users in Sophisticated Attack

New Malware Posing as CAPTCHA Targets Crypto Users in Sophisticated Attack

Published:
2025-08-20 04:23:01
19
2
BTCCSquare news:

Cybersecurity researchers have identified a disturbing new threat vector targeting cryptocurrency holders. A fileless malware strain disguised as CAPTCHA verification systems is compromising devices to steal passwords and digital assets. The attack vector shows alarming sophistication, with fake CAPTCHA screens appearing even on legitimate websites.

Lumma Stealer, operating as a malware-as-a-service platform, has evolved its tactics since first appearing in 2022. The threat actor's business model offers monthly subscriptions starting at $250, demonstrating the commercialization of cybercrime. Microsoft and U.S. authorities have seized thousands of domains, but the malware persists through rapid regeneration.

The attack methodology plays on user trust in security protocols. Victims attempting to complete what appears to be routine CAPTCHA verification instead trigger malicious code execution. Trend Micro's latest analysis reveals enhanced evasion capabilities, making Lumma particularly dangerous for crypto traders and investors.

|Square

Get the BTCC app to start your crypto journey

Get started today Scan to join our 100M+ users