Skip to content
supplychainattack.orgSupply chain attack incident catalog
resolvedcritical

Malicious code in Zendesk.Client (NuGet)

Malicious code was discovered in the Zendesk.Client NuGet package. The OpenSSF malicious packages project identified and documented the incident under MAL-2024-4709.

ShareXLinkedInHacker News
Disclosed
Last updated
Blast radius
Zendesk.Client NuGet package users
Ecosystems
Attack vectors
Affected entities
  • Zendesk.ClientNuGet package

Malicious code was found in the Zendesk.Client package distributed via NuGet. The OpenSSF (Open Source Security Foundation) identified and cataloged this incident as part of their malicious packages tracking effort.\n\nThe advisory was published on GitHub (GHSA-6w9c-cv52-44gp) and credited to the OpenSSF malicious packages project. The incident was documented in the OpenSSF's malicious packages repository under identifier MAL-2024-4709.\n\nAffected users of the Zendesk.Client NuGet package should immediately review their dependencies and update to a clean version if available.

Indicators of compromise

Packages
  • Zendesk.Client

Remediation

  • Remove or update the affected Zendesk.Client NuGet package to a known-clean version
  • Review application logs and system activity for any suspicious behavior following installation of the malicious package
  • Audit any systems that may have executed code from the compromised package
  • Monitor for indicators of compromise related to the malicious payload

Sources

  1. GitHub Advisory GHSA-6w9c-cv52-44gp · GitHub Advisory Database

Cite this entry

"Malicious code in Zendesk.Client (NuGet)." supplychainattack.org, Supply Chain Attack Incident Catalog. Disclosed July 20, 2026; last updated July 20, 2026. https://supplychainattack.org/incident/malicious-code-in-zendesk-client-nuget-1qxmtj

Suggest a correction

Found an error or have a newer source? Corrections to factual errors take priority over new entries.

  1. resolvedcritical

    Malicious code in Reactive.GUI.Winforms (NuGet)

    Malicious code was discovered in the Reactive.GUI.Winforms NuGet package. The package was identified by the OpenSSF malicious packages project and reported via GitHub Advisory GHSA-45h9-gh73-7ghq.

    NuGetCompromised package
  2. resolvedcritical

    Malicious code in PubIishIgnore (NuGet)

    Malicious code was discovered in the PubIishIgnore NuGet package. The package contained intentional malicious functionality and was flagged by the OpenSSF malicious packages project.

    NuGetCompromised package
  3. resolvedcritical

    Malicious code in stripeapi.net (NuGet)

    Malicious code was discovered in multiple versions of the stripeapi.net NuGet package. The incident was identified and documented by the OpenSSF malicious-packages project.

    NuGetCompromised package
  4. resolvedcritical

    Malicious code in WpfScreenHelper.Net (NuGet)

    Malicious code was discovered in the WpfScreenHelper.Net NuGet package. The package was compromised and distributed with malicious payload. The incident was identified and documented by the OpenSSF malicious packages project.

    NuGetCompromised package