
TanStack NPM Supply Chain Attack Exposes 170 Private CrowdSec GitHub Repositories
CrowdSec has disclosed that a May 2026 compromise tied to the TanStack npm supply-chain incident enabled attackers to clone roughly 170 private GitHub repositories, exposing internal source code and limited sensitive contact data. The company said the intrusion was traced to a former employee’s GitHub OAuth token, which attackers allegedly obtained through the broader TanStack […]
The post TanStack NPM Supply Chain Attack Exposes 170 Private CrowdSec GitHub Repositories appeared first on Cyber Security News.