Netskope Threat Labs

AdamantiumTheif

ATP Sandbox Adv. Heuristics

AdamantiumTheif is a credential stealer that researchers documented in 2020 as part of a family of tools named after metals that includes Rutherford Thief and Chromium Thief. It harvests passwords, cookies, and stored secrets from infected systems, and its operators monitored the collection through a central dashboard.

First seen
June 2022
Last seen
September 2026
Alert Name
ByteCode-MSIL.Infostealer.AdamantiumTheif
Win32.Infostealer.AdamantiumTheif