Back to News
Cybersecurity

Lunex Stealer Exploits AMD Driver Vulnerability to Evade Security and Harvest Credentials

Recent findings reveal the Lunex Stealer malware employs innovative tactics to bypass security measures and extract sensitive information from users.

Recent research by Ontinue has unveiled a sophisticated malware campaign involving Lunex Stealer, which exploits a vulnerability in AMD drivers to disable security monitoring and steal browser credentials. This malware, part of a larger malware-as-a-service (MaaS) ecosystem, is primarily targeting Ukrainian-speaking users through compromised websites. The attack employs a four-stage chain that begins with a deceptive CAPTCHA page, leveraging ClickFix-style verification checks to gain user trust before executing its malicious payload.

For businesses, particularly those operating in or with ties to Ukraine, the implications are significant. The ability of Lunex Stealer to circumvent security measures poses a direct threat to sensitive data, highlighting the necessity for organizations to bolster their cybersecurity posture. This includes implementing advanced detection and response strategies, employee training on phishing tactics, and regular system updates to mitigate vulnerabilities. As cybercriminals increasingly adopt innovative methods to exploit software weaknesses, understanding and addressing these threats becomes essential for safeguarding organizational integrity and maintaining customer trust in the digital age.

---

*Originally reported by [The Hacker News](https://thehackernews.com/2026/09/lunex-stealer-abuses-amd-driver-to.html)*