A Single Extra “t” in a NuGet Package Allow Attackers to Manipulate Results

A malicious NuGet package used a single extra letter to hide in plain sight, turning a familiar software dependency into a betting-fraud tool. The package, Newtonsoftt.Json.Net, copied the appearance of the widely used Newtonsoft.Json library while carrying code designed to alter game outcomes. The campaign relied on typosquatting, a tactic that exploits small spelling mistakes made […]

The post A Single Extra “t” in a NuGet Package Allow Attackers to Manipulate Results appeared first on Cyber Security News.

This article has been indexed from Cyber Security News

Read the original article: