Log In Sign Up
News Wire / technology

TanStack NPM Packages Compromised In Supply-Chain Attack

developing Mastodon 5h5h Impact 6
84 compromised TanStack npm package artifacts were modified with credential-stealing malware. The malware targeted CI systems, including those used for supply-chain attacks. The compromise was detected by Socket. This incident affects developers using these packages. A mass supply chain attack has compromised packages within TanStack, Mistral AI, NPM, and PyPI.

Topics

supply chain attack npm packages malware

Developing

  1. 862d Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore.
  2. 862d Duis aute irure dolor in reprehenderit in voluptate velit esse cillum dolore eu fugiat nulla pariatur.
  3. 862d Excepteur sint occaecat cupidatat non proident, sunt in culpa qui officia deserunt mollit anim id est.
  4. 862d Sed ut perspiciatis unde omnis iste natus error sit voluptatem accusantium doloremque laudantium.

Sources · 7 independent

Source Alpha Source Bravo Source Charlie Source Delta Source Echo Source Foxtrot Source Golf

Unlock the full story

Get a Pro subscription or above to see the live story progression and the full list of independent sources confirming each event as they happen.

Log in to upgrade