Skip to content
supplychainattack.orgSupply chain attack incident catalog
resolvedcritical

Malicious code in TheOpenAI.API (NuGet)

Malicious code was discovered in multiple versions of the TheOpenAI.API NuGet package. The compromise was identified and documented by the OpenSSF malicious packages project.

ShareXLinkedInHacker News
Disclosed
Last updated
Blast radius
All users of affected TheOpenAI.API NuGet package versions
Ecosystems
Attack vectors
Affected entities
  • TheOpenAI.APINuGet package with malicious code

Multiple versions of the TheOpenAI.API NuGet package contained malicious code. The incident was identified and credited to the OpenSSF (Open Source Security Foundation) malicious packages project.\n\nThe affected package is hosted on NuGet and was flagged through GitHub's advisory system (GHSA-c9x5-hf5q-mpww). The malicious versions were documented in the OpenSSF's malicious packages repository under identifier MAL-2024-4688.\n\nUsers of TheOpenAI.API should remove or update affected versions immediately to prevent execution of malicious code in their applications.

Indicators of compromise

Packages
  • TheOpenAI.API

Remediation

  • Remove or uninstall affected versions of TheOpenAI.API from all projects
  • Update to a patched version if available from the package maintainer
  • Audit systems that may have executed code from affected versions
  • Review NuGet package dependencies for other potentially compromised packages
  • Monitor for any suspicious activity in systems that used the malicious package versions

Sources

  1. GitHub Advisory GHSA-c9x5-hf5q-mpww · GitHub Advisory Database

Cite this entry

"Malicious code in TheOpenAI.API (NuGet)." supplychainattack.org, Supply Chain Attack Incident Catalog. Disclosed July 20, 2026; last updated July 20, 2026. https://supplychainattack.org/incident/malicious-code-in-theopenai-api-nuget-1jxey9

Suggest a correction

Found an error or have a newer source? Corrections to factual errors take priority over new entries.

  1. containedcritical

    Malicious code in intercom-php (Packagist)

    The intercom-php package on Packagist was compromised with malicious code as part of the Mini Shai-Hulud campaign by the TeamPCP threat actor. The malicious payload steals credentials and can propagate to NPM packages using discovered credentials.

    Mini Shai HuludTeamPCPNuGetCompromised packageMalicious maintainer
  2. resolvedcritical

    Malicious code in Ultimate.Wpf.Toolkit (NuGet)

    Multiple versions of the Ultimate.Wpf.Toolkit NuGet package contained malicious code. The incident was identified and documented by the OpenSSF malicious packages project.

    NuGetCompromised package
  3. resolvedcritical

    Malicious code in YoutubeExtractor.Net (NuGet)

    Malicious code was discovered in the YoutubeExtractor.Net NuGet package. The incident was identified and documented by the OpenSSF malicious packages project.

    NuGetCompromised package
  4. resolvedcritical

    Malicious code in Zendesk.OAuth (NuGet)

    Malicious code was discovered in multiple versions of the Zendesk.OAuth NuGet package. The incident was identified and documented by the OpenSSF malicious packages project.

    NuGetCompromised package