TanStack has released a detailed postmortem describing a sophisticated supply-chain attack that compromised 42 npm packages ...
When OpenAI engineers discovered that a poisoned update to a widely used JavaScript library had executed on two corporate ...
On May 11, 2026, a self-replicating worm called Mini Shai-Hulud quietly slipped into 42 widely used TanStack open-source packages, corrupting 84 npm artifacts before anyone noticed. Within hours, the ...
Shai-Hulud worm exploited GitHub Actions misconfiguration to poison shared cache, now project weighing nuclear option on ...
OpenAI confirms breach in TanStack attack affecting 2 employee devices; macOS users must update by June 12, 2026 deadline.
CISA currently warns of recently observed supply chain attacks on TanStack, Daemon Tools, and Nx Console, which have ...
On May 11, 2026, several TanStack packages on npm were briefly replaced with malicious versions, raising fresh concerns about ...
A popular developer of open source analytics software has revealed that a recent data breach and extortion incident was ...
GitHub says the hackers who breached 3,800 internal repositories gained access via a malicious version of the Nx Console VS ...
The TanStack Router is an alternative to the React Router, the de facto standard for routing in React applications. The TanStack team released the first stable version in December 2023. The router ...