PulseAugur
中
实时 04:17:35
English(EN) Malicious npm Packages With Valid SLSA Provenance: Inside the TanStack Attack

带有有效来源的恶意包利用 GitHub Actions 漏洞

一个被称为“Mini Shai-Hulud”的复杂攻击活动,由 TeamPCP 团队发起,已成功攻破 npm 和 PyPI 上的众多开源包,包括 TanStack、Mistral AI 和 UiPath 等知名项目。攻击者利用 GitHub Actions 的弱点,发布带有有效 SLSA 来源的恶意版本包,而 SLSA 来源曾被认为是保证构建过程完整性的安全措施。这是首次记录到恶意包绕过 SLSA 构建级别 3 的事件,引发了对软件供应链安全的严重担忧。 AI

影响 破坏了对软件供应链的信任,可能减缓依赖开源组件的 AI 工具的采用。

排序理由 这是一起重大的安全事件,涉及多个带有有效来源的高调开源包被攻破,凸显了供应链安全措施中的一个关键漏洞。[lever_c_demoted from significant: ic=1 ai=0.7]

在 dev.to — MCP tag 阅读 →

AI 生成摘要 · Google Gemini · 来自 1 个来源。 我们如何撰写摘要 →

带有有效来源的恶意包利用 GitHub Actions 漏洞

本文如何被排名

Signal score
0 / 100
Composite score across the factors below. Higher = stronger signal that this story matters right now.
Newsworthiness bucket
Research
这是一起重大的安全事件,涉及多个带有有效来源的高调开源包被攻破,凸显了供应链安全措施中的一个关键漏洞。[lever_c_demoted from significant: ic=1 ai=0.7]
Source corroboration
Single-source cluster
Only one publisher covered this so far. Single-source stories can still rank when the publisher is high-authority, but they lack cross-source corroboration.
Topics
safety, product
Editorial topic classification. Feeds into how the story surfaces on /topic/<slug> hub pages and into the per-entity coverage mix.
AI-industry relevance
High
Clearly on-topic for AI-industry coverage.
Story freshness
126 days old
Aged out of breaking-news scoring windows; ranking reflects the durable signal from the full source set.

完整方法见我们的编辑标准。

报道来源 [1]

  1. dev.to — MCP tag TIER_1 English(EN) · Oli Guei ·

    带有有效 SLSA 来源的恶意 npm 包:TanStack 攻击内幕

    <p><strong>The TanStack packages were malicious. Their provenance was valid. Both are true.</strong></p> <p>On 11 May 2026, between 19:20 and 19:26 UTC, someone published 84 malicious versions across 42 <code>@tanstack/*</code> npm packages. Six minutes, start to finish. <code>@t…