Evm-units is a malware family tracked across 2 threat clusters and 2 intelligence report mentions on ThreatCluster. First observed December 3, 2025; most recent activity December 4, 2025.
Evm-units is a Rust-based malware family that targets Web3 developers by impersonating legitimate tooling (evm-units) and delivering malicious Rust crates via the Cargo ecosystem. Its use of crate impersonation and OS-level payload delivery highlights a significant supply-chain risk in Web3 development and Rust projects.
A malicious Rust crate named evm-units was discovered, aimed at stealing cryptocurrency from Web3 developers. It was downloaded 7,257 times before being removed from the Rust package registry, along with another…
A malicious Rust crate named 'evm-units', masquerading as an Ethereum Virtual Machine utility, was found delivering silent, OS-specific payloads to developers' machines. Authored by 'ablerust', it was hosted on…