TTPwire Vol. 1 · MITRE ATT&CK·Tagged

← All stories

Infosecurity Magazine

Malicious NuGet Package Targets Stripe Developers

2026-02-25 · Read original ↗

ATT&CK techniques detected

8 predictions
T1195.001Compromise Software Dependencies and Development Tools
99%
"only a test entry. reversinglabs warned that the incident highlights persistent third - party risk in modern software development. " the increasing frequency of such campaigns requires a shift in thinking by developers, " the team warned. " legitimate packages may... be compromis…"
T1195.001Compromise Software Dependencies and Development Tools
72%
"instead of stripe ' s logo. researchers said that the malicious package showed more than 180, 000 downloads. however, they also noted that figures appear to have been artificially inflated. instead of accumulating large download counts across a small number of versions, the threa…"
T1195.001Compromise Software Dependencies and Development Tools
70%
"malicious nuget package targets stripe developers a malicious nuget package designed to mimic stripe ' s official. net library has been uncovered by cybersecurity researchers, marking a shift in tactics from earlier cryptocurrency - focused campaigns to the broader financial sect…"
T1195.002Compromise Software Supply Chain
66%
"instead of stripe ' s logo. researchers said that the malicious package showed more than 180, 000 downloads. however, they also noted that figures appear to have been artificially inflated. instead of accumulating large download counts across a small number of versions, the threa…"
T1587Develop Capabilities
60%
"only a test entry. reversinglabs warned that the incident highlights persistent third - party risk in modern software development. " the increasing frequency of such campaigns requires a shift in thinking by developers, " the team warned. " legitimate packages may... be compromis…"
T1204.005Malicious Library
49%
"only a test entry. reversinglabs warned that the incident highlights persistent third - party risk in modern software development. " the increasing frequency of such campaigns requires a shift in thinking by developers, " the team warned. " legitimate packages may... be compromis…"
T1195Supply Chain Compromise
44%
"malicious nuget package targets stripe developers a malicious nuget package designed to mimic stripe ' s official. net library has been uncovered by cybersecurity researchers, marking a shift in tactics from earlier cryptocurrency - focused campaigns to the broader financial sect…"
T1195.002Compromise Software Supply Chain
44%
"malicious nuget package targets stripe developers a malicious nuget package designed to mimic stripe ' s official. net library has been uncovered by cybersecurity researchers, marking a shift in tactics from earlier cryptocurrency - focused campaigns to the broader financial sect…"

Summary

Malicious NuGet package mimicking Stripe's library targeted developers