Live Threat Pulse: 2,847 threats detected in last 24h

menu_book Malware Family

Rhadamanthys Stealer

Also known as: Rhadamanthys

Rhadamanthys is an advanced, modular infostealer sold as malware-as-a-service that steals credentials, cookies, cryptocurrency wallets, and documents. It is known for sophisticated evasion, a plugin architecture, and the ability to extract data from a wide range of applications.

What is Rhadamanthys?

Rhadamanthys is a feature-rich infostealer that markets advanced capabilities to subscribers. It uses a modular, plugin-based design and incorporates evasion and anti-analysis techniques that make it a higher-end option in the stealer market.

Capabilities

Beyond standard credential and cookie theft, Rhadamanthys can grab cryptocurrency wallets, documents, and application secrets, and supports additional modules. Its operators frequently update it, and it has been distributed through malvertising and phishing.

How VantaPrism Tracks Rhadamanthys Stealer

VantaPrism tracks advanced families like Rhadamanthys, parsing their logs so that exposures from more sophisticated stealers are surfaced with the same speed as high-volume commodity families.

Check Your Exposure arrow_forward

Frequently Asked Questions

Why is Rhadamanthys considered advanced?

expand_more
It uses a modular plugin architecture, strong evasion and anti-analysis techniques, and broad application support, positioning it as a higher-end infostealer compared with commodity families.
← All Glossary Terms Last reviewed: June 2026