San Francisco, 14 May 2026 – OpenAI said it found no evidence that user data was accessed, its production systems were compromised or its software was altered after identifying a security issue involving TanStack npm, a common open-source library affected by a broader supply-chain attack.
The company said the incident formed part of a wider attack known as Mini Shai-Hulud, which targeted open-source software packages. OpenAI said its investigation found no evidence that OpenAI user data, production systems or intellectual property were compromised.
Unlock the Full Article
This article is exclusive to The Ledger Asia Subsribers / PAID members.
Already have an account? Log in here









