Microsoft warns of ClickFix campaign exploiting Windows Terminal to deliver Lumma Stealer
2026-03-06T14:51:48Z•ab187897fea40f6effba005de497df1950043fa91eae42f78b03990992fbf494
APTBadPawCISACVE-2023-43000Cisco Secure FMCClickFixCorunaDust SpecterGTIGKnown Exploited VulnerabilitiesLeakBaseLumma StealerMeowMeowOperation LeakPhobosSPLITDROPTWINTALKTWINTASKWindows TerminaliOS exploit kitphishingransomwareremediationsocial engineeringzero-day
What happened
Collection of recent cyber threats and vulnerability developments: Microsoft warns of a ClickFix social‑engineering campaign that abuses Windows Terminal to execute commands and drop Lumma Stealer; Iran‑linked APT Dust Specter is targeting Iraqi officials with phishing delivering new malware families (SPLITDROP, TWINTASK, TWINTALK); Google GTIG reports 90 zero‑days exploited in 2025 and uncovers the Coruna iOS exploit kit (targets iOS 13–17.2.1); CISA added multiple exploited flaws to its KEV catalog including CVE‑2023‑43000 (Apple WebKit); Cisco patched maximum‑severity Secure FMC flaws that可
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- securityaffairs
- Record identifier
- ab187897fea40f6effba005de497df1950043fa91eae42f78b03990992fbf494
- Enrichment time
- 2026-03-06T14:51:48Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.