HeroDevs Joins The .NET Foundation to Secure and Grow the Open Source Ecosystem
Corporate sponsorship expands HeroDevs’ commitment to .NET security, sustainability, and long-term open source support through funding, engineering, and coordinated vulnerability response.
.png)
HeroDevs is proud to announce a partnership with the .NET Foundation, joining as a corporate sponsor to commit financial support, engineering collaboration, and backing for vital .NET community programs. This sponsorship directly supports the Foundation’s mission to strengthen, expand, and secure the long‑term future of the .NET open source ecosystem.
This collaboration builds on HeroDevs’ long‑standing track record of investing in the security, stability, and sustainability of open source software. HeroDevs is the architect of Never‑Ending Support (NES) for .NET, a revolutionary drop‑in replacement for end-of-life (EOL) versions of .NET that delivers ongoing security patches, addressing known vulnerabilities while ensuring compatibility with existing .NET applications. For enterprises, NES for .NET is an immediate solution, mitigating the security risk of EOL .NET versions in production and ensuring compliance with stringent SLAs, regulatory requirements, and audits.
By extending the lifespan of legacy .NET versions, NES for .NET gives enterprises the breathing room to plan and execute migrations on their own timelines, without the pressure of security gaps, audit failures, or rushed rewrites. Following a stellar track record in the JavaScript and Java ecosystems, HeroDevs is now the first third-party post-EOL security vendor to bring this critical post-EOL security support offering to the .NET space.
For .NET, HeroDevs’ commitment extends beyond any single initiative. Through its $20 million Open Source Sustainability Fund, HeroDevs supports maintainers across all open source ecosystems, including .NET, who are building secure, sustainable projects for the long term. This fund is dedicated to issuing targeted grants for open source maintainers who adopt essential best practices, ensuring open source security and longevity.
The HeroDevs Open Source Sustainability Fund actively supports maintainers, improves release practices, and invests in strengthening security practices across critical open source projects. Open source .NET project maintainers are encouraged to apply for funding and gain access to guidance on best practices and partnership opportunities to scale their projects.
Our dedication to .NET security is already underway through engagement with the broader .NET security ecosystem. HeroDevs is an active participant in the crucial .NET Security Group, working alongside Microsoft, Red Hat, IBM, and Canonical. This group is responsible for coordinating pre‑disclosure patching and simultaneous .NET releases across all major .NET distributors.
As part of its commitment to .NET security, HeroDevs highlighted the risks of CVE-2025-55315, the 9.9-rated CVE reported in October of 2025. CVE-2025-5531 was patched upstream in .NET versions 8, 9, and 10 following .NET security practices and lifecycle policies, but not in vulnerable EOL versions like .NET 6. Our team released an open source testing tool and provided patched versions of NES for .NET 6 mitigating the 9.9-rated CVE for enterprises.
As a CVE Numbering Authority (CNA), HeroDevs has also independently reproduced and reported vulnerabilities in post-EOL versions of .NET and filed CVEs to alert developers and system administrators to vulnerabilities in post-EOL versions of .NET they may be running.
Our sponsorship of the .NET Foundation strengthens these vital security efforts, ensuring the .NET community benefits from faster, better-coordinated vulnerability disclosures and a broader availability of patched builds.
The .NET Foundation, a 501(c)(6) nonprofit, works to support an innovative, commercially friendly, open-source .NET ecosystem. HeroDevs’ contribution directly fuels Foundation programs like project stewardship, event support, and advocacy that empowers projects to scale and remain community‑driven, cementing a vibrant and sustainable future for all .NET developers.
This partnership goes beyond a logo: HeroDevs is committing capital, engineering expertise, and security collaboration to the .NET ecosystem’s future. From the immediate protection offered by NES for .NET for organizations to the long-term investment of the Open Source Sustainability Fund and our active role in the .NET Security Group, this partnership is a testament to our belief in community-driven open source software. This sponsorship represents a shared commitment to advancing a vibrant, sustainable, and secure future for the global .NET ecosystem.
.png)
.png)
.png)