Malicious code in Syntellect.Winium.Element (NuGet)
Malicious code was discovered in the Syntellect.Winium.Element NuGet package. The package was identified by the OpenSSF malicious-packages project as containing malicious code.
- Disclosed
- Last updated
- Blast radius
- Unknown; depends on adoption of affected versions
- Ecosystems
- Attack vectors
- Affected entities
- Syntellect.Winium.Element
The Syntellect.Winium.Element NuGet package was found to contain malicious code and was cataloged by the OpenSSF's malicious-packages project (identifier MAL-2024-4667). The advisory was published on GitHub on July 20, 2026.\n\nThis incident represents a compromised package in the NuGet ecosystem. The malicious code was injected into the package, making it a direct supply chain attack vector for any projects that depend on this package.\n\nNo specific technical details about the malicious payload, affected versions, or remediation steps are provided in the source material beyond the identification of the malicious package itself.
Indicators of compromise
- Packages
- Syntellect.Winium.Element
Remediation
- Remove or update the Syntellect.Winium.Element package from all projects
- Audit projects that depend on Syntellect.Winium.Element for signs of compromise
- Review NuGet package dependencies for other potentially malicious packages
- Monitor for security advisories from the OpenSSF malicious-packages project
Sources
- GitHub Advisory GHSA-8h9x-mgcv-h4mf · GitHub Advisory Database
Cite this entry
"Malicious code in Syntellect.Winium.Element (NuGet)." supplychainattack.org, Supply Chain Attack Incident Catalog. Disclosed July 20, 2026; last updated July 20, 2026. https://supplychainattack.org/incident/malicious-code-in-syntellect-winium-element-nuget-13ajfq
Suggest a correction
Found an error or have a newer source? Corrections to factual errors take priority over new entries.
Related incidents
- resolvedcritical
Malicious code in Ultimate.Wpf.Toolkit (NuGet)
Multiple versions of the Ultimate.Wpf.Toolkit NuGet package contained malicious code. The incident was identified and documented by the OpenSSF malicious packages project.
NuGetCompromised package - resolvedcritical
Malicious code in YoutubeExtractor.Net (NuGet)
Malicious code was discovered in the YoutubeExtractor.Net NuGet package. The incident was identified and documented by the OpenSSF malicious packages project.
NuGetCompromised package - resolvedcritical
Malicious code in Zendesk.OAuth (NuGet)
Malicious code was discovered in multiple versions of the Zendesk.OAuth NuGet package. The incident was identified and documented by the OpenSSF malicious packages project.
NuGetCompromised package - resolvedcritical
Malicious code in Winforms (NuGet)
Malicious code was discovered in multiple versions of the Winforms package on NuGet. The incident was documented by the OpenSSF malicious packages project and published as GitHub advisory GHSA-wq82-5xjm-57wq.
NuGetCompromised package