Skip to content
supplychainattack.orgSupply chain attack incident catalog
resolvedcritical

Malicious code in Stl.Blazor.Authentication.Net (NuGet)

Malicious code was discovered in the Stl.Blazor.Authentication.Net NuGet package. The incident was identified and documented by the OpenSSF malicious packages project.

ShareXLinkedInHacker News
Disclosed
Last updated
Blast radius
Stl.Blazor.Authentication.Net package consumers on NuGet
Ecosystems
Attack vectors
Affected entities
  • Stl.Blazor.Authentication.NetNuGet package

The Stl.Blazor.Authentication.Net package on NuGet was found to contain malicious code. This discovery was credited to the OpenSSF's malicious packages initiative, which maintains a catalog of known malicious software supply chain incidents.\n\nThe package is a .NET/Blazor authentication library, making it a potentially high-impact target for supply chain compromise. The malicious code in this package could affect any application that depends on it for authentication functionality.\n\nThe incident was documented in the OpenSSF malicious packages repository under identifier MAL-2024-4655, indicating formal recognition and tracking of this supply chain attack.

Indicators of compromise

Packages
  • Stl.Blazor.Authentication.Net

Remediation

  • Remove or uninstall the Stl.Blazor.Authentication.Net package from affected projects
  • Audit project dependencies to identify all applications using this package
  • Review application logs and security events for any suspicious activity related to authentication
  • Replace the malicious package with a legitimate authentication solution or a patched version if available
  • Conduct a security review of any systems that may have been compromised through this package

Sources

  1. GitHub Advisory GHSA-36g4-vc9w-qr67 · GitHub Advisory Database

Cite this entry

"Malicious code in Stl.Blazor.Authentication.Net (NuGet)." supplychainattack.org, Supply Chain Attack Incident Catalog. Disclosed January 1, 2024; last updated July 20, 2026. https://supplychainattack.org/incident/malicious-code-in-stl-blazor-authentication-net-nuget-lu5s4u

Suggest a correction

Found an error or have a newer source? Corrections to factual errors take priority over new entries.

  1. resolvedcritical

    Malicious code in Reothor.Lab.EvilPackage (NuGet)

    Malicious code was discovered in multiple versions of the Reothor.Lab.EvilPackage NuGet package. The package was identified by the OpenSSF malicious-packages project and assigned identifier MAL-2024-4626.

    NuGetCompromised package
  2. resolvedcritical

    Malicious code in seedefender (NuGet)

    Malicious code was discovered in the seedefender NuGet package. The incident was identified and reported via the OpenSSF malicious packages database.

    NuGetCompromised package
  3. resolvedcritical

    Malicious code in Ripple.NetCore.Api (NuGet)

    Malicious code was discovered in the Ripple.NetCore.Api NuGet package. The OpenSSF malicious packages project identified and documented the compromise under identifier MAL-2024-4631.

    NuGetCompromised package
  4. resolvedcritical

    Malicious code in Resource.Embedder.Net (NuGet)

    Malicious code was discovered in the Resource.Embedder.Net NuGet package. The package was identified by the OpenSSF malicious packages project as containing malicious code.

    NuGetCompromised package