216.73.217.22

New Python RAT Targets Gamers via Minecraft

· Published 22/10/2025 19:02 · Modified 22/10/2025 20:06

Export JSON

Essential information

Published
22/10/2025 19:02
Modified
22/10/2025 20:06
Tags
2025-10-22 discord gaming minecraft nursultan client python rat surveillance telegram token theft
Related entities
1 observables, 10 techniques (mitre), 1 malware, 1 others

Description

A new multi-function has been discovered targeting gamers through . The malware, posing as a legitimate client called '', uses the Bot API for command and control. It has capabilities including screenshot capture, webcam access, , and URL opening on victim machines. The malware attempts to persist on Windows systems but has flaws in its implementation. It specifically targets authentication tokens and performs system reconnaissance. The use of for C2 and the focus on gamers suggests a Malware-as-a-Service model, with the author likely selling customized versions to other threat actors.

External references