Security firm ReversingLabs has discovered a malicious .NET library on the official NuGet repository.
The package contains code to take screenshots of the infected system every minute and upload the data to a remote server.
ReversingLabs says the library appears to target developers who work with industrial software from Chinese company Bozhon.


ReversingLabs
Suspicious NuGet package grabs data from industrial systems | ReversingLabs
Espionage has long been a driver for malicious cyber campaigns. Here's what the RL research team knows about the suspicious SqzrFramework480 campaign.
