CrowdSec Says TanStack npm Attack Led to Copy of 170 Private GitHub Repositories
CrowdSec reported that an attack on the TanStack npm package resulted in a copy of 170 private GitHub repositories, according to The Hacker News. The report attributes the finding to CrowdSec and links the repository copying to the TanStack npm attack. The source provides no further detail on the method, the repositories involved, or the affected parties. The stated consequence is that private GitHub repositories were copied in connection with the npm attack.
The report links an npm package attack to the copying of 170 private GitHub repositories, a supply-chain risk for developers relying on npm packages.


