{
  "id": 589780,
  "title": "Scammers are using fake Odyssey pirate downloads to spread malware that's more dangerous than the Cyclops and Circe combined",
  "url": "https://urgent.news/2026/08/11/scammers-are-using-fake-odyssey-pirate-downloads-to-spread-malware",
  "topic": "tech",
  "section": "Tech",
  "published": "2026-08-11T18:05:00.000Z",
  "source": {
    "name": "TechRadar",
    "slug": "techradar",
    "url": "https://www.techradar.com/pro/security/scammers-are-using-fake-odyssey-pirate-downloads-to-spread-malware-thats-more-dangerous-than-the-cyclops-and-circe-combined"
  },
  "original_language": "en",
  "account": "Cybercriminals are leveraging fraudulent pirate downloads of the highly anticipated film Odyssey to distribute malware that is far more potent than the mythological characters it draws inspiration from. Bitdefender, a cybersecurity firm, reports that these fake downloads come disguised as scene releases, complete with .exe files bearing VLC icons to mimic legitimate movie files.\n\nThe real threat lies in stolen session cookies, which enable attackers to continue accessing authenticated sessions without triggering multi-factor authentication prompts. The malware, known as Lumma Stealer, operates as a Malware-as-a-Service (MaaS) and harvests sensitive information such as browser passwords, authentication cookies, payment details, cryptocurrency data, autofill data, and remote desktop credentials.\n\nUnlike previous movie-themed Lumma builds that included more sophisticated persistence mechanisms, this campaign appears content with collecting data at execution and does not attempt to maintain persistence on the infected machine. Bitdefender's researchers note that the samples in this campaign do not include droppers or persistence mechanisms, making the malware less sophisticated but no less harmful due to its ability to steal credentials without staying resident on the system.\n\nTo avoid falling victim to this scam, the report advises users to steer clear of downloading pirated films from sources that lack robust security measures. Enabling file extensions in Windows Explorer, which is disabled by default, also helps prevent this specific type of attack.",
  "summary": "Fake downloads of The Odyssey are delivering Lumma Stealer, and the stolen session cookies walk straight past your two-factor authentication",
  "key_points": [
    "Cybercriminals use fake Odyssey downloads to spread Lumma Stealer malware.",
    "Malware steals sensitive data like passwords, cookies, and payment details.",
    "Users should avoid pirated film downloads and enable file extensions in Windows."
  ],
  "editors_take": null,
  "illustration": null,
  "coverage": {
    "outlets": 1,
    "also_reported_by": []
  },
  "ai_generated": true,
  "disclaimer": "Summaries, key points and the editor’s take are written by software from other outlets’ reporting and may contain errors — always check the linked original."
}