Security · OpenAI Blog ·

Our response to the TanStack npm supply chain attack

Our response to the TanStack npm supply chain attack

OpenAI described its response to the TanStack “Mini Shai-Hulud” npm supply chain attack, including steps taken to secure systems and signing certificates. It also said macOS users must update OpenAI apps by June 12, 2026, while it strengthens defenses against software supply chain threats.

Read the full story at OpenAI Blog →