ยท about 2 hours agoยท Dev.to
npm Supply Chain Breach: India's Cybersecurity Response
In May 2026, attackers compromised 42 TanStack packages by poisoning a GitHub Actions build cache through a pull request. The malicious code exfiltrated AWS credentials, GCP tokens, Kubernetes secrets, and SSH keys from every developer who installed the affected versions. This was not an isolated in
#npm#supply chain#cybersecurity#india#open-source