Hackers are hiding powerful info-stealing malware in fake free VPNs downloaded from GitHub, don’t get tricked

Hackers are hiding powerful info-stealing malware in fake free VPNs downloaded from GitHub, don’t get tricked


  • GitHub repositories host malware disguised as tools that gamers, and privacy-seekers are likely to download
  • The fake VPN campaign drops malware straight into AppData and hides it from plain view
  • Process injection through MSBuild.exe allows this malware to operate without triggering obvious alarms

Security experts have warned of an emerging new cyber threat involving fake VPN software hosted on GitHub.

A report from Cyfirma outlines how malware disguises itself as a “Free VPN for PC” and lures users into downloading what is, in fact, a sophisticated dropper for the Lumma Stealer.

Leave a Reply

Your email address will not be published. Required fields are marked *

From the latest gadgets to expert reviews and unbeatable deals — dive into our handpicked content across all things tech.