Lumina
Lumina, also referred to by the user as Lumina Intelligence, is a Ukrainian-aligned OSINT/de-anonymization group that emerged publicly in 2026 with a declared focus on identifying and exposing the structure and members of pro-Russian hacker groups.
Its public activity is fundamentally different from a conventional intrusion actor. Lumina’s visible product is investigation: collecting digital traces, correlating personas, collaborating with other OSINT groups and publishing identity/relationship findings. Early public coverage described it as a new anti-hacker deanon team and highlighted investigations into members of Smeshariki and Perun Swaroga.
Later activity includes joint investigative work with the Ukrainian OSINT project OSINT Простими Словами / OSINT Simple around the pro-Russian persona PalachPro and related ecosystem history. The value of Lumina to 3C-INT is therefore both defensive and source-oriented: it can generate leads on adversary identities and relationships, but each de-anonymization claim must be independently validated before being promoted to high-confidence attribution.
The Telegram handle @[redacted] currently presents as a transition/redirect channel, while an X profile with the same handle remains indexed. Account migration should therefore be tracked as part of infrastructure continuity.
INFERENCE (confidence: medium-high): Lumina is best modeled as a counter-hacktivist intelligence node whose operational impact comes from reducing adversary anonymity and exposing social/organizational links rather than from malware or network disruption.