OpenAI has rotated code-signing certificates after code repositories containing them were compromised in the TanStack supply ...
TanStack has released a detailed postmortem describing a sophisticated supply-chain attack that compromised 42 npm packages ...
GitHub says the breach of roughly 3,800 internal repositories was tied to the wider TanStack npm supply-chain attack.
OpenAI says two employees' devices were breached in the recent TanStack supply chain attack that impacted hundreds of npm and ...
GitHub says the hackers who breached 3,800 internal repositories gained access via a malicious version of the Nx Console VS ...
Mini Shai-Hulud hit 2 OpenAI devices via TanStack, exposing limited credentials and forcing macOS certificate updates by June ...
Two devices were compromised by TeamPCP's infostealing malware.
Shai-Hulud worm exploited GitHub Actions misconfiguration to poison shared cache, now project weighing nuclear option on ...
Hackers exploited a TanStack library vulnerability, compromising two OpenAI employees' devices and accessing limited internal ...
Numerous TanStack packages on npm have suffered a supply chain attack, apparently as part of the “Mini Shai-Hulud” attack wave.