Malicious code in TheOpenAI.API (NuGet)
Malicious code was discovered in multiple versions of the TheOpenAI.API NuGet package. The compromise was identified and documented by the OpenSSF malicious packages project.
- Disclosed
- Last updated
- Blast radius
- All users of affected TheOpenAI.API NuGet package versions
- Ecosystems
- Attack vectors
- Affected entities
- TheOpenAI.APINuGet package with malicious code
Multiple versions of the TheOpenAI.API NuGet package contained malicious code. The incident was identified and credited to the OpenSSF (Open Source Security Foundation) malicious packages project.\n\nThe affected package is hosted on NuGet and was flagged through GitHub's advisory system (GHSA-c9x5-hf5q-mpww). The malicious versions were documented in the OpenSSF's malicious packages repository under identifier MAL-2024-4688.\n\nUsers of TheOpenAI.API should remove or update affected versions immediately to prevent execution of malicious code in their applications.
Indicators of compromise
- Packages
- TheOpenAI.API
Remediation
- Remove or uninstall affected versions of TheOpenAI.API from all projects
- Update to a patched version if available from the package maintainer
- Audit systems that may have executed code from affected versions
- Review NuGet package dependencies for other potentially compromised packages
- Monitor for any suspicious activity in systems that used the malicious package versions
Sources
- GitHub Advisory GHSA-c9x5-hf5q-mpww · GitHub Advisory Database
Cite this entry
"Malicious code in TheOpenAI.API (NuGet)." supplychainattack.org, Supply Chain Attack Incident Catalog. Disclosed July 20, 2026; last updated July 20, 2026. https://supplychainattack.org/incident/malicious-code-in-theopenai-api-nuget-1jxey9
Suggest a correction
Found an error or have a newer source? Corrections to factual errors take priority over new entries.
Related incidents
- containedcritical
Malicious code in intercom-php (Packagist)
The intercom-php package on Packagist was compromised with malicious code as part of the Mini Shai-Hulud campaign by the TeamPCP threat actor. The malicious payload steals credentials and can propagate to NPM packages using discovered credentials.
Mini Shai HuludTeamPCPNuGetCompromised packageMalicious maintainer - resolvedcritical
Malicious code in Ultimate.Wpf.Toolkit (NuGet)
Multiple versions of the Ultimate.Wpf.Toolkit NuGet package contained malicious code. The incident was identified and documented by the OpenSSF malicious packages project.
NuGetCompromised package - resolvedcritical
Malicious code in YoutubeExtractor.Net (NuGet)
Malicious code was discovered in the YoutubeExtractor.Net NuGet package. The incident was identified and documented by the OpenSSF malicious packages project.
NuGetCompromised package - resolvedcritical
Malicious code in Zendesk.OAuth (NuGet)
Malicious code was discovered in multiple versions of the Zendesk.OAuth NuGet package. The incident was identified and documented by the OpenSSF malicious packages project.
NuGetCompromised package