#2
BleepingComputer
general
May 14, 2026 at 19:07 UTC
OpenAI confirms security breach in TanStack supply chain attack
By Lawrence Abrams
AI Summary
OpenAI confirmed two employee devices were compromised in the TanStack npm supply chain attack, which impacted hundreds of npm and PyPI packages across multiple AI companies. As a precautionary response, OpenAI rotated code-signing certificates for its applications — a significant incident given the breadth of the supply chain compromise affecting developer tooling widely used in AI projects.
Relevance score: 90.0/100
Sponsored
Protect Your Business
Expert cybersecurity solutions to safeguard your organization from evolving threats.
Get Protected →