Sometimes, erstwhile you request an reply to a analyzable beingness concern oregon a mode to troubleshoot an mistake connected your computer, regular articles connected the web don’t help. Some issues are truthful niche that nary 1 writes astir them, and those who bash often accidental thing utile successful 1,000 words.
In these cases, adding Reddit to your hunt query tin beryllium a crippled changer. Nine times retired of 10, idiosyncratic connected Reddit has faced the aforesaid issue, and there's astir apt a solution.
But atrocious actors person caught connected to this, too. They’re present mimicking Reddit to dispersed malware that tin bargain your idiosyncratic information.
GET SECURITY ALERTS, EXPERT TIPS - SIGN UP FOR KURT’S NEWSLETTER - THE CYBERGUY REPORT HERE
Reddit app connected location surface of smartphone (Kurt "CyberGuy" Knutsson)
What you request to cognize astir fake Reddit pages
Hackers are distributing astir 1,000 fake websites mimicking Reddit and WeTransfer to dispersed the Lumma Stealer malware. These sites are designed to instrumentality you into downloading malicious bundle by imitating morganatic discussions and file-sharing services.
On these fake Reddit pages, attackers make a fabricated treatment wherever 1 idiosyncratic asks for assistance downloading a tool, different offers a WeTransfer nexus and a 3rd expresses gratitude to marque the speech look real. Clicking the nexus redirects victims to a counterfeit WeTransfer site, wherever the download fastener delivers the Lumma Stealer malware.
All these fake pages person the pursuing things successful common:
- The websites see a marque sanction (like "Reddit" oregon "WeTransfer") followed by random characters to look morganatic astatine archetypal glance
- They usage ".org" oregon ".net" domains alternatively of the authoritative one, which is ".com"
- The interface intimately mimics the existent sites to deceive users
These fake websites were discovered by Sekoia researcher crep1x, who compiled a afloat database of the pages progressive successful the scheme. In total, 529 of these sites mimic Reddit, portion 407 impersonate WeTransfer to instrumentality users into downloading malware.
According to BleepingComputer, hackers whitethorn beryllium driving postulation to these fake pages done methods similar malicious ads (malvertising), hunt motor manipulation (SEO poisoning), harmful websites, nonstop messages connected societal media and different deceptive tactics.
Illustration of a hacker astatine work (Kurt "CyberGuy" Knutsson)
HOW TO REMOVE YOUR PRIVATE DATA FROM THE INTERNET
The dangers of info-stealer malware
Hackers are utilizing fake Reddit pages to dispersed Lumma Stealer, a almighty malware designed to bargain idiosyncratic information portion staying nether the radar. Once it infects a device, it tin drawback passwords stored successful web browsers and league tokens, allowing attackers to hijack accounts without adjacent needing a password.
But Reddit isn’t the lone mode this malware spreads. Hackers besides propulsion it done GitHub comments, deepfake websites and shady online ads. Once they steal login credentials, they often merchantability them connected hacker forums, wherever others tin usage them for further attacks.
This benignant of malware has already played a relation successful large information breaches, including attacks on PowerSchool, Hot Topic, CircleCI and Snowflake. It’s a increasing threat, particularly for companies that trust connected password-based security.
WHAT IS ARTIFICIAL INTELLIGENCE (AI)?
Illustration of a hacker astatine work
BEST ANTIVIRUS FOR MAC, PC, IPHONES AND ANDROIDS - CYBERGUY PICKS
6 ways to support yourself from info-stealing malware
1. Be cautious with download links: Avoid downloading files from random Reddit discussions, societal media messages oregon unfamiliar websites. If an chartless idiosyncratic shares the nexus oregon seems retired of spot successful the context, it’s amended to err connected the broadside of caution. If the nexus is directing you to a file-sharing tract similar WeTransfer oregon Google Drive, double-check the URL for immoderate signs of manipulation—like random characters added to the domain name.
2. Have beardown antivirus software: The champion mode to safeguard yourself from malicious links that instal malware originating from these Reddit discussions, perchance accessing your backstage information, is to person antivirus bundle installed connected each your devices. This extortion tin besides alert you to phishing emails and ransomware scams, keeping your idiosyncratic accusation and integer assets safe. Get my picks for the champion 2025 antivirus extortion winners for your Windows, Mac, Android and iOS devices.
GET FOX BUSINESS ON THE GO BY CLICKING HERE
3. Verify website URLs: Fake websites often look convincing but person flimsy differences successful their URLs. Check for misspellings, other characters oregon antithetic domains (e.g., ".org" oregon ".net" alternatively of the authoritative ".com").
4. Use strong, unsocial passwords and alteration 2FA: A password manager tin assistance make and store beardown passwords for each site. Meanwhile, enabling two-factor authentication (2FA) adds an other furniture of security, making it harder for attackers to hijack your accounts. Get much details astir my best expert-reviewed Password Managers of 2025 here.
5. Keep your bundle updated: Regularly update your operating system, apps, browsers and different bundle connected your PC oregon mobile devices. Updates often see patches for information vulnerabilities that hackers tin exploit.
6. Watch retired for malvertising and SEO traps: Hackers manipulate hunt motor results and run deceptive ads to instrumentality users into visiting fake sites. Stick to authoritative sources and debar clicking connected ads oregon hunt results that look excessively bully to beryllium true.
HOW TO FIGHT BACK AGAINST DEBIT CARD HACKERS WHO ARE AFTER YOUR MONEY
Kurt’s cardinal takeaway
Hackers are getting sneakier, utilizing fake Reddit and WeTransfer pages to dispersed unsafe malware similar Lumma Stealer. These sites mightiness look real, but they’re designed to bargain your idiosyncratic info. To enactment safe, ever double-check links and beryllium cautious astir downloading files from unfamiliar sources. Use strong, unsocial passwords, alteration two-factor authentication and support your bundle updated to enactment 1 measurement ahead of cybercriminals.
CLICK HERE TO GET THE FOX NEWS APP
Have you ever encountered a suspicious nexus connected Reddit oregon societal media? How did you grip it? Let america cognize by penning america astatine Cyberguy.com/Contact.
For much of my tech tips and information alerts, subscribe to my escaped CyberGuy Report Newsletter by heading to Cyberguy.com/Newsletter.
Ask Kurt a question oregon fto america cognize what stories you'd similar america to cover.
Follow Kurt connected his societal channels:
Answers to the astir asked CyberGuy questions:
- What is the champion mode to support your Mac, Windows, iPhone and Android devices from getting hacked?
- What is the champion mode to enactment private, unafraid and anonymous portion browsing the web?
- How tin I get escaped of robocalls with apps and information removal services?
- How bash I region my backstage information from the internet?
New from Kurt:
Copyright 2025 CyberGuy.com. All rights reserved.
Kurt "CyberGuy" Knutsson is an award-winning tech writer who has a heavy emotion of technology, cogwheel and gadgets that marque beingness amended with his contributions for Fox News & FOX Business opening mornings connected "FOX & Friends." Got a tech question? Get Kurt’s escaped CyberGuy Newsletter, stock your voice, a communicative thought oregon remark astatine CyberGuy.com.