Venom RAT is a malware family tracked across 2 threat clusters and 1 intelligence report mention on ThreatCluster. First observed November 13, 2025; most recent activity November 13, 2025.
Venom RAT is a remote access trojan (RAT) malware family used to compromise systems and grant attackers covert, persistent control over infected machines. It gained prominence through high-level law enforcement actions, such as Europol’s Operation Endgame, which targeted its infrastructure alongside other threat actors like Rhadamanthys and the Elysium botnet, underscoring its role in active cybercrime campaigns.
Law enforcement from nine countries has dismantled over 1,000 servers associated with the Rhadamanthys infostealer, VenomRAT remote access Trojan, and Elysium botnet during Operation Endgame. This operation, coordinated…
Europol and law enforcement agencies from 11 countries executed Operation Endgame 3.0 from November 10 to 13, 2025, dismantling the infrastructure of three major malware operations: Rhadamanthys, VenomRAT, and Elysium.…