Country visual unavailable
No information
On 11 May 2026 attackers compromised TanStack's Router/Start publishing workflow and released 84 malicious versions across 42 npm packages. The compromise propagated downstream: Mistral confirmed malicious SDK releases and an affected developer device, while OpenAI confirmed two employee devices were impacted, limited credential material was exfiltrated and code-deployment workflows were temporarily restricted.
Estimated severity
83 / 100
Source reliability
94 / 100
Approximate Date
11/05/2026
Targeted Company
TANSTACK
Distribution & Fulfillment
Procurement & Sourcing
Production & Manufacturing
Sales (Retail & Ecommerce)
Warehousing
Service Delivery
Unrecognized Impact
Supply Chain Relations
Country visual unavailable
No information
No other affected countries reported
Target country
No information
Affected countries
No information
Impacted regions
No information
Duration
No information
Financial impact (USD M)
No information
Impact types
Affected sectors
Affected departments
Attack types
Attributed threat actors
Incident Sources
Please rotate your phone