{"id":"MAL-2024-4589","summary":"Malicious code in OCI.DotNetSDK.Datalabeling.service (NuGet)","details":"\n---\n_-= Per source details. Do not edit below this line.=-_\n","modified":"2024-10-24T01:01:57Z","published":"2024-06-25T13:30:29Z","database_specific":{"malicious-packages-origins":[{"sha256":"b57427fb97c0f530c034a6b5cf991c5e2a1270056f2a3279e44c604b97bb1a93","source":"reversing-labs","versions":["73.0.0"],"id":"RLMA-2024-03375","import_time":"2024-06-28T02:47:56.191725119Z","modified_time":"2024-06-25T13:30:29Z"},{"id":"RLUA-2024-07696","import_time":"2024-10-24T00:58:39.56675771Z","modified_time":"2024-10-16T13:48:09Z","sha256":"6e34cf55eaf434b7ac04ebb1f5fbbc47deb30d63e79624112c4a130b9a26d6e2","source":"reversing-labs"}]},"references":[{"type":"ARTICLE","url":"https://www.reversinglabs.com/blog/iamreboot-malicious-nuget-packages-exploit-msbuild-loophole"}],"affected":[{"package":{"name":"OCI.DotNetSDK.Datalabeling.service","ecosystem":"NuGet","purl":"pkg:nuget/OCI.DotNetSDK.Datalabeling.service"},"versions":["73.0.0"],"database_specific":{"source":"https://github.com/ossf/malicious-packages/blob/main/osv/malicious/nuget/oci.dotnetsdk.datalabeling.service/MAL-2024-4589.json"}}],"schema_version":"1.7.3","credits":[{"name":"ReversingLabs","contact":["https://www.reversinglabs.com"],"type":"FINDER"}]}