logo

TanStack Supply Chain Attack Hits Two OpenAI Employee Devices, Forces macOS Updates

ID: b39eef31-f6da-54b8-b515-fba891946870

STIX ID: report--b39eef31-f6da-54b8-b515-fba891946870

Feed Name: The Hacker News

Threat Score
90/100

Date Published: 2026-05-15

Date Updated: 2026-05-15

Author: [email protected] (The Hacker News)

...
...

A widespread supply-chain campaign using the Shai-Hulud worm (attributed to TeamPCP and linked actors) trojanized numerous open-source packages (TanStack, Mistral AI, Guardrails AI, UiPath, OpenSearch) to deliver a modular credential-stealing and exfiltration toolkit; OpenAI confirmed two employee devices were impacted and limited repository credential material was exfiltrated, prompting credential rotation and code-signing certificate revocations. The malware contains a hard-coded primary C2 IP (83.142.209.194), a FIRESCALE fallback that pulls an alternative server URL from public GitHub commits verified by an embedded RSA key, collects AWS credentials across all availability zones (including GovCloud), and includes geo-fenced destructive behavior and extensive credential/SSH/docker harvesting, while the threat actors are publicly offering the worm and threatening to sell or leak stolen code.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.