TanStack has released a detailed postmortem describing a sophisticated supply-chain attack that compromised 42 npm packages ...
When OpenAI engineers discovered that a poisoned update to a widely used JavaScript library had executed on two corporate ...
On May 11, 2026, a self-replicating worm called Mini Shai-Hulud quietly slipped into 42 widely used TanStack open-source ...
Over 170 TanStack, Mistral AI, OpenSearch, UiPath, and other packages were affected in a new Mini Shai-Hulud supply chain ...