RedTiger: New Red Teaming Tool in the Wild Targeting Gamers and Discord Accounts
ID: 4a50e592-183c-5e64-bd52-b72a190a84a1
STIX ID: report--4a50e592-183c-5e64-bd52-b72a190a84a1
Feed Name: Netskope Threat Labs
This Netskope Threat Labs report analyzes RedTiger, a newly public, modular Python-based red-teaming toolkit whose infostealer payloads are being abused in the wild to target gamers—especially Discord and Roblox users—by stealing tokens, browser-stored credentials and payment data, cryptocurrency wallets, screenshots/webcam images, and selected files; the malware supports persistence, anti-sandbox checks, hosts-file tampering, process/file spamming to hinder forensics, and exfiltrates collected data in two stages (upload to GoFile and delivery of the download link via Discord webhook).
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
