Home Malware Programs Potentially Unwanted Programs (PUPs) Adamantium Stealer

Adamantium Stealer

Posted: April 1, 2021

The Adamantium Stealer, also known as Adamantium Thief, is a threatening piece of software whose developer has hosted it on GitHub. The project is fully open-sourced and, according to the author, it is supposed to be used for educational purposes, and they did not develop it with the intention of the project being used with threatening intent. Unfortunately, cybercriminals do not care about these disclaimers, and they have already started abusing the Adamantium Stealer to carry out attacks against users in Europe and Russia.

One of the recent spam campaigns propagating the Adamantium Stealer uses a fake document made to look as if it comes from SberBank, a popular financial institution in the Russian region. The document packs a corrupted script, which is designed to deploy and run a modified copy of the Adamantium Stealer. Once the implant is active, it enables its operators to collect data from Google Chrome, Mozilla Firefox, Vivaldi, Opera, Torch, Brave, and other browsers based on the Gecko or Chromium projects.

The criminals are able to collect passwords, payment information, bookmarks, history, cookies and more. The infostealer works in the background, and it does not raise any red flags, which users may notice. The only way to make sure that your browser's data will not be hijacked by the Adamantium Stealer or similar malware is to keep your system protected by an up-to-date anti-virus tool at all times.

Loading...