Water KuritaWater Kurita

Also known as: Water Kurita

Known aliases
1

Profile

Water Kurita is a financially motivated cybercriminal entity associated with the Lumma Stealer infostealer-as-a-service operation, primarily active on underground forums and marketplaces. It focuses on credential and information theft at scale, monetizing access via subscription-based malware distribution and resale of stolen data to other actors. The group demonstrates solid operational security and marketing tactics typical of mature MaaS ecosystems, although a 2025 doxxing campaign exposing alleged core members (personal and financial data) significantly disrupted its activity and drove customers toward competing infostealers.

Aliases· 1

Water Kurita

References

  1. https://www.trendmicro.com/en_us/research/25/c/ai-assisted-fake-github-repositories.html
  2. https://www.trendmicro.com/en_us/research/25/g/lumma-stealer-returns.html
  3. https://www.trendmicro.com/en_us/research/25/j/the-impact-of-water-kurita-lumma-stealer-doxxing.html
  4. https://www.trendmicro.com/en_us/research/25/k/lumma-stealer-browser-fingerprinting.html

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

Actor
Water Curupira
Actor
Water Bakunawa
Actor
Water Makara
Actor
Water Labbu
Actor
Water Orthrus
Actor
Water Barghest
Sourced from MISP-Galaxy Threat Actor cluster. Curated by Adam Lundqvist, Founder at SQUR.