TanStack npm supply-chain attack: Mini Shai-Hulud worm hit 42 packages
On May 11, 2026, the Mini Shai-Hulud worm published 84 malicious versions of 42 @tanstack/* packages with valid SLSA provenance after reading an OIDC token from runner memory. A Dependabot bump pulled it into the squawk project, which published 110 more versions in 95 minutes; over 160 packages were affected, including Mistral's.
- 84 malicious versions of 42 @tanstack/* packages shipped with valid provenance
- Worm read the OIDC token from Runner.Worker memory via /proc/<pid>/mem
- A Dependabot bump spread it to squawk: 110 versions in 95 minutes
- Over 160 packages affected ecosystem-wide, including Mistral's
Read next
Security