Mini Shai-Hulud Worm Compromises TanStack, Mistral AI, Guardrails AI & More Packages

Source: The Hacker News  ·  Category: Supply Chain


TeamPCP (Mini Shai-Hulud campaign) compromised npm and PyPI packages from TanStack, UiPath, Mistral AI, OpenSearch, and Guardrails AI with obfuscated JavaScript. Law firms using these packages must immediately audit dependencies and regenerate secrets.

→ Read the full article

Read more