- The Rhadamanthys stealer is a multi-layer malware, sold on the black market, and frequently updated. Recently the author released a new major version, 0.5.0.
- In the new version, the malware expands its stealing capabilities and also introduces some general-purpose spying functions.
- A new plugin system makes the malware expandable for specific distributor needs.
- The custom executable formats, used for modules, are unchanged since our last publication (XS1 and XS2 formats are still in distribution).
And it has evolved to target more crypto related wallets:
And as per usual the methods to spread this is thru torrents, warez, malvertizing, Youtube videos and other channels.
So as much as possible stay away from those sites, do not download any fake softwares. Everyone should be very careful more than ever as criminals are very much into our space right now and we don't want to be the next victim here.
https://research.checkpoint.com/2023/rhadamanthys-v0-5-0-a-deep-dive-into-the-stealers-components/
Good to see that Mycelium is not on the list but the list is huge and many other popular names are included in the list which is quite concerning.
It's good that you have shared the list because many people download these wallets like Electrum, Atomic wallet, Exodus etc...
Fake softwares are all over the internet and this is reason why it is always recommended to download softwares from official websites only.