Skip to main content
Scour
Discover
Docs
Login
Sign Up
Discover
About
Docs
Changelog
You are offline. Trying to reconnect...
Copied to clipboard
Unable to share or copy to clipboard
Back to article
stepsecurity.io
5w
5 weeks ago
Mini Shai-Hulud - TanStack and more npm packages compromised, with SLSA Build Level 3 provenance attestations
(opens in new tab)
Covers
Postmortem: TanStack NPM supply-chain compromise
Covered by
11 sources
See all sources covering this story
including
This Week In 4n6
,
infoworld.com
Discussed on
Lobsters
Love
Like
Not for me
Save
|
|
Report
Off Topic
Harmful Content
Low Quality
Spam
Misleading
Duplicate
Wrong Language
Block
Add to your feed
Feeds
Share
Report
Off Topic
Harmful Content
Low Quality
Spam
Misleading
Duplicate
Wrong Language
Block Domain
Feeds
✨ Discovered from this domain
StepSecurity - Detect, Prevent, and Respond to Software Supply Chain Attacks
stepsecurity.io
Lobsters: Newest Stories
lobste.rs
Improvements to std::format in C++26
1h
1 hour ago
Windows UI evolution: Clicking an unassociated file
1h
1 hour ago
Mark-of-the-web and pinning installers to sites
2h
2 hours ago
+19 more in the past day
Keyboard Shortcuts
Navigation
Next / previous post
j
/
k
Open post
o
or
Enter
Preview post
v
Post Actions
Love post
a
Like post
l
Dislike post
d
Undo reaction
u
Save / unsave
s
Recommendations
Add interest / feed
Enter
Not interested
x
Go to
Home
g
h
Interests
g
i
Feeds
g
f
Likes
g
l
History
g
y
Changelog
g
c
Settings
g
s
Discover
g
b
Search
/
Pagination
Next page
n
Previous page
p
General
Show this help
?
Submit feedback
!
Close modal / unfocus
Esc
Press
?
anytime to show this help
Like
Save
Not for me
Report