Signal

TanStack, Mistral AI, UiPath Hit in Fresh Supply Chain Attack

Evidence first: scan the strongest sources, then decide whether to go deeper.

Published 2026-05-11 20:21 UTCUpdated 2026-05-12 21:38 UTC
rss
mini_shai
Trend in the last 24h
Source links open
Source links and full evidence are open here. Archive history, compare-over-time, alerts, exports, API, integrations, and workflow are paid.
No card needed for the free brief.
Evidence trail (top sources)
top sources (4 domains)domains are deduped. counts indicate coverage, not truth.
4 top sources shown
Overview

Coverage centers on: Mini Shai-Hulud’ malware compromises hundreds of open-source packages in sprawling supply-chain attack.

Score total
1.67
Momentum 24h
6
Posts
6
Origins
5
Source types
1
Duplicate ratio
0%
All evidence
All evidence
Mistral AI SDK, TanStack Router hit in npm software supply chain attack
CSO Online · csoonline.com · 2026-05-12 17:14 UTC
Shai Hulud attack ships signed malicious TanStack, Mistral npm packages
bleepingcomputer_all · bleepingcomputer.com · 2026-05-12 11:29 UTC
TanStack, Mistral AI, UiPath Hit in Fresh Supply Chain Attack
SecurityWeek · securityweek.com · 2026-05-12 10:10 UTC
Show filters & breakdown
Posts loaded: 0Publishers: 5Origin domains: 5Duplicates: -
Showing 5 / 0
Top publishers (this list)
  • CyberScoop (1)
  • SC Media (1)
  • CSO Online (1)
  • bleepingcomputer_all (1)
  • SecurityWeek (1)
Top origin domains (this list)
  • cyberscoop.com (1)
  • scworld.com (1)
  • csoonline.com (1)
  • bleepingcomputer.com (1)
  • securityweek.com (1)