PulseAugur
EN
LIVE 17:52:35

Malicious packages with valid provenance exploit GitHub Actions flaws

A sophisticated attack campaign, dubbed "Mini Shai-Hulud" by the group TeamPCP, has successfully compromised numerous open-source packages across npm and PyPI, including prominent ones like TanStack, Mistral AI, and UiPath. The attackers exploited weaknesses in GitHub Actions to publish malicious versions of packages with valid SLSA provenance, a security measure previously thought to guarantee the integrity of the build process. This marks the first documented instance of malicious packages bypassing SLSA Build Level 3, raising significant concerns about software supply chain security. AI

IMPACT Undermines trust in software supply chains, potentially slowing adoption of AI tools reliant on open-source components.

RANK_REASON This is a significant security incident involving the compromise of multiple high-profile open-source packages with valid provenance, highlighting a critical flaw in supply chain security measures. [lever_c_demoted from significant: ic=1 ai=0.7]

Read on dev.to — MCP tag →

AI-generated summary · Google Gemini · from 1 sources. How we write summaries →

COVERAGE [1]

  1. dev.to — MCP tag TIER_1 English(EN) · Oli Guei ·

    Malicious npm Packages With Valid SLSA Provenance: Inside the TanStack Attack

    <p><strong>The TanStack packages were malicious. Their provenance was valid. Both are true.</strong></p> <p>On 11 May 2026, between 19:20 and 19:26 UTC, someone published 84 malicious versions across 42 <code>@tanstack/*</code> npm packages. Six minutes, start to finish. <code>@t…