NuGet Malware Impersonates Nethereum to Steal Crypto Assets

NuGet Malware Impersonates Nethereum to Steal Crypto Assets

First seen 18 Dec 2025, 21:53 UTC ReversinglabsGbhackers 78% similarity 33.6

Article Content

Browse articles
ThreatCluster

Malicious NuGet packages have been identified that mimic the Nethereum library, targeting crypto wallets and OAuth tokens. Users of .NET applications integrating these libraries are at risk of having their credentials and assets stolen. The malware exploits the functionality of legitimate packages to conduct its attacks.

ThreatCluster AI

Community

Browse all →