Skip to content

OpenAI Confirms Security Breach Via TanStack npm Supply Chain Attack

Cybersecuritynews •Guru Baran • May 15, 2026

Two employee devices at OpenAI were compromised in a sweeping software supply chain attack targeting TanStack npm, but the AI company confirmed no user data, production systems, or intellectual property were affected. On May 11, 2026 UTC, threat actors launched a campaign dubbed “Mini Shai-Hulud” a coordinated supply chain offensive orchestrated by the TeamPCP extortion […]

Extracted Entities

APT Groups (1)

Attack Types (1)

Companies (1)

Malware (1)