Techub News reports, according to TechCrunch, OpenAI confirmed that two employees' devices were affected in a supply chain attack earlier this week, where hackers gained access to some internal source code repository credentials through a hijacked TanStack open-source library, but emphasized that no user data or intellectual property was leaked. The company stated that the affected repositories contain digital certificates used for signing products, and certificate rotation has now been initiated as a precaution, with macOS users required to update their applications. This attack is part of a recent wave of supply chain attacks targeting open-source projects, where hackers spread malware by pushing malicious updates.

View Original
This page may contain third-party content, which is provided for information purposes only (not representations/warranties) and should not be considered as an endorsement of its views by Gate, nor as financial or professional advice. See Disclaimer for details.
  • Reward
  • Comment
  • Repost
  • Share
Comment
Add a comment
Add a comment
No comments
  • Pinned