logo

RedTiger: New Red Teaming Tool in the Wild Targeting Gamers and Discord Accounts

ID: 4a50e592-183c-5e64-bd52-b72a190a84a1

STIX ID: report--4a50e592-183c-5e64-bd52-b72a190a84a1

Feed Name: Netskope Threat Labs

Threat Score
72/100

Date Published: 2025-10-23

Date Updated: 2026-04-28

Author: Jan Michael Alcantara

...
...

This Netskope Threat Labs report analyzes RedTiger, a newly public, modular Python-based red-teaming toolkit whose infostealer payloads are being abused in the wild to target gamers—especially Discord and Roblox users—by stealing tokens, browser-stored credentials and payment data, cryptocurrency wallets, screenshots/webcam images, and selected files; the malware supports persistence, anti-sandbox checks, hosts-file tampering, process/file spamming to hinder forensics, and exfiltrates collected data in two stages (upload to GoFile and delivery of the download link via Discord webhook).

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.