Industrial IT systems threatened by ‘time bombs’ in malicious NuGet packages


  • Socket found nine NuGet packages with delayed sabotage targeting industrial control systems
  • Sharp7Extend can corrupt Siemens S7 PLCs and crash host processes randomly
  • Malicious code activates in 2027-2028; users are prompted to audit and remove affected packages

Thousands of critical infrastructure organizations, as well as those working in other equally important verticals, were targeted by a treacherous attack aimed at sabotaging their industrial control devices (ICDs) two years later, experts have found.

Socket cybersecurity researchers recently discovered nine packages on NuGet containing sabotage payloads that are expected to activate in 2027 and 2028, if certain conditions are met.

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top