Discord is now an essential tool for hackers Discord


Gaming-centric messaging platform Discord has become a favorite tool among cybercriminals, research suggests.
A new report from security company Sophos shows that Discord, which has grown rapidly in popularity in recent years, is now regularly used to host, distribute and control different kinds of malware.
What’s more, the issue is becoming more grave by the week. Over the past two months, Sophos has detected almost 140 times the number of Discord malware threats than in the same period last year.
In Q2, the firm discovered 17,000 unique malware URLs in the Discord content delivery network, almost 5,000 of which remain active at the time of writing. Most of these malware strains are classified as infostealers, which are designed to lift account credentials and other personal information.
Discord malware
According to Sean Gallagher, Senior Threat Researcher at Sophos, Discord has become an increasingly enticing tool for cybercriminals due to its extensive infrastructure and increasingly large customer base.
“Discord provides a persistent, highly-available, global distribution network for malware operators, as well as a messaging system that these operators can adapt into command-and-control channels for their malware,” he explained.
“Discord’s vast user base also provides an ideal environment for stealing personal information and credentials through social engineering.”
Often, hackers disguise malware as tools to help players cheat in video games aimed predominantly at younger audiences, such as Fortnite or Roblox. In other instances, victims might be offered a chance to sample a game still under development.
Sophos also discovered that old ransomware from the early 2000s was circulating on the platform as mischiefware, a type of malware that revokes access to the victim’s files without providing any means of recovery.
In the report, Sophos commended Discord on the swiftness with which it responds to takedown requests, but also advised users to take a handful of steps to shield against potential scams on the platform.
The company advised Discord users to use multi-factor authentication to guard against account takeover and to ensure their device is also protected by an up-to-date antivirus service. As a side note, the firm added that users should never download unlicensed software, no matter how reputable the source.
“Discord users, whoever they are and whatever they use the platform for, should remain vigilant to the threat of malicious content and not just leave it to the Discord platform to identify and remove suspicious files,” added Gallagher.
“In addition, IT security teams should never consider any traffic from an online cloud service as inherently ‘safe’ based on the trusted nature or legitimacy of the service itself. Adversaries could be hiding anywhere.”
Asked for comment on the Sophos report and for clarification over the measures in place to prevent the circulation of malware, Discord told TechRadar Pro it relies on a multi-layered approach.
“Platform security is a priority for us. Discord relies on a mix of proactive scanning – such as antivirus scanning – and reactive reports to detect malware and viruses on our service before they reach users. We also do proactive work to locate and remove communities misusing Discord for this purpose. Once we become aware of these cases or bad actors, we remove the content and take appropriate action on any participants,” explained a Discord spokesperson.
“We value feedback from trusted sources like Sophos whose expertise can help identify malware so that we can remove it and ensure no further distribution occurs on Discord.”
Gaming-centric messaging platform Discord has become a favorite tool among cybercriminals, research suggests. A new report from security company Sophos shows that Discord, which has grown rapidly in popularity in recent years, is now regularly used to host, distribute and control different kinds of malware. What’s more, the issue is…
Recent Posts
- Reddit is experiencing outages again
- OpenAI confirms 400 million weekly ChatGPT users – here’s 5 great ways to use the world’s most popular AI chatbot
- Elon Musk’s AI said he and Trump deserve the death penalty
- Grok resets the AI race
- The GSA is shutting down its EV chargers, calling them ‘not mission critical’
Archives
- February 2025
- January 2025
- December 2024
- November 2024
- October 2024
- September 2024
- August 2024
- July 2024
- June 2024
- May 2024
- April 2024
- March 2024
- February 2024
- January 2024
- December 2023
- November 2023
- October 2023
- September 2023
- August 2023
- July 2023
- June 2023
- May 2023
- April 2023
- March 2023
- February 2023
- January 2023
- December 2022
- November 2022
- October 2022
- September 2022
- August 2022
- July 2022
- June 2022
- May 2022
- April 2022
- March 2022
- February 2022
- January 2022
- December 2021
- November 2021
- October 2021
- September 2021
- August 2021
- July 2021
- June 2021
- May 2021
- April 2021
- March 2021
- February 2021
- January 2021
- December 2020
- November 2020
- October 2020
- September 2020
- August 2020
- July 2020
- June 2020
- May 2020
- April 2020
- March 2020
- February 2020
- January 2020
- December 2019
- November 2019
- September 2018
- October 2017
- December 2011
- August 2010