Briefing

OpenAI Employee Devices Compromised in TanStack Supply‑Chain Attack

security
deadline 12 Jun 2026 · OpenAI

Patch OpenAI macOS apps to the latest version before June 12 to eliminate the supply‑chain vulnerability.

What to do now

Patch OpenAI apps to the latest version before June 12 to eliminate the supply‑chain vulnerability.

Summary

OpenAI revealed that two of its employee devices were compromised by a Mini Shai‑Hulud supply‑chain attack targeting the TanStack library. The malicious code was inserted into the TanStack repository and subsequently downloaded by the affected devices. Security teams detected the intrusion early and contained it before any user data, production systems, or intellectual property were exposed. No evidence of data exfiltration was found, and the company confirmed that no user data or proprietary information was compromised.

The company’s rapid response highlighted the critical importance of supply‑chain security for third‑party libraries. OpenAI’s incident response team worked to isolate the infected devices, remove the malicious package, and patch the vulnerability. The organization also intensified monitoring for similar threats across its infrastructure, reinforcing its commitment to protecting internal assets and customer data. OpenAI’s statement emphasized that the attack underscored the growing risk associated with external dependencies and the need for rigorous vetting and continuous oversight of open‑source components.

The TanStack library, widely used in web development, has become a target for attackers seeking to exploit popular dependencies. The Mini Shai‑Hulud attack is part of a broader trend of supply‑chain breaches that have affected numerous organizations worldwide. While OpenAI’s swift containment prevented a larger breach, the incident serves as a stark reminder that even well‑protected companies can fall victim to sophisticated supply‑chain attacks. The company’s proactive stance—prompt detection, containment, and ongoing monitoring—demonstrates a robust approach to mitigating such risks, but also signals the need for industry‑wide collaboration to secure the software supply chain.

Key changes

  • TanStack “Mini Shai‑Hulud” attack compromised OpenAI signing certificates
  • Malicious code could have been injected into macOS applications
  • OpenAI secured signing certificates and added supply‑chain defenses
  • New macOS app version released and must be installed before June 12
  • OpenAI announced audit of all third‑party dependencies
  • Users urged to download the latest release immediately
  • Incident underscores risk of supply‑chain attacks on AI software
  • OpenAI’s rapid response aims to restore user trust

Affects

internal

Source angles · 2 perspectives

OpenAI Blog
Vendor angle

Our response to the TanStack npm supply chain attack

Open
The Hacker News
Independent angle

OpenAI Employee Devices Compromised in Mini Shai‑Hulud Supply‑Chain Attack on TanStack

Open

Customer impact

Analyzing matches…

Ask about this story

Impact on an agency? Which customers? Compare historically Risks of waiting