Malicious code in ReaLTaiizor-WinForm (NuGet)
Malicious code was discovered in the ReaLTaiizor-WinForm NuGet package. The OpenSSF malicious packages project identified and documented the compromise under identifier MAL-2024-4624.
- Disclosed
- Last updated
- Blast radius
- All users of affected ReaLTaiizor-WinForm NuGet package versions
- Ecosystems
- Attack vectors
- Affected entities
- ReaLTaiizor-WinFormNuGet package with malicious code
The ReaLTaiizor-WinForm NuGet package was found to contain malicious code. This discovery was made and documented by the OpenSSF's malicious packages project, which maintains a catalog of confirmed malicious software supply chain incidents.\n\nThe affected package is ReaLTaiizor-WinForm distributed via NuGet. The incident was formally documented under the identifier MAL-2024-4624 in the OpenSSF malicious packages repository.\n\nDevelopers who have installed or depend on affected versions of this package should immediately remove the dependency and audit their systems for any signs of compromise.
Indicators of compromise
- Packages
- ReaLTaiizor-WinForm
Remediation
- Remove ReaLTaiizor-WinForm from project dependencies immediately
- Audit systems for any artifacts or changes introduced by the malicious package
- Review and rotate any credentials or secrets that may have been exposed
- Check for any unauthorized network connections or data exfiltration
- Update to a clean, verified version if a patched release is available
- Notify any downstream consumers of your software that may have included this dependency
Sources
- GitHub Advisory GHSA-7m4f-mhm9-chp3 · GitHub Advisory Database
Cite this entry
"Malicious code in ReaLTaiizor-WinForm (NuGet)." supplychainattack.org, Supply Chain Attack Incident Catalog. Disclosed January 1, 2024; last updated July 20, 2026. https://supplychainattack.org/incident/malicious-code-in-realtaiizor-winform-nuget-1j32ns
Suggest a correction
Found an error or have a newer source? Corrections to factual errors take priority over new entries.
Related incidents
- resolvedcritical
Malicious code in Reothor.Lab.EvilPackage (NuGet)
Malicious code was discovered in multiple versions of the Reothor.Lab.EvilPackage NuGet package. The package was identified by the OpenSSF malicious-packages project and assigned identifier MAL-2024-4626.
NuGetCompromised package - resolvedcritical
Malicious code in seedefender (NuGet)
Malicious code was discovered in the seedefender NuGet package. The incident was identified and reported via the OpenSSF malicious packages database.
NuGetCompromised package - resolvedcritical
Malicious code in Ripple.NetCore.Api (NuGet)
Malicious code was discovered in the Ripple.NetCore.Api NuGet package. The OpenSSF malicious packages project identified and documented the compromise under identifier MAL-2024-4631.
NuGetCompromised package - resolvedcritical
Malicious code in Resource.Embedder.Net (NuGet)
Malicious code was discovered in the Resource.Embedder.Net NuGet package. The package was identified by the OpenSSF malicious packages project as containing malicious code.
NuGetCompromised package