1Sep 18 10:08 PM · 5d ago · 2 posts · 1 source · development 1 of 2
CrowdSec's CEO publishes an extensive write-up covering the timeline, origin point, credential and data impact, and the team's reaction, arguing the real-world impact is smaller than the headline suggests.
thehackernews.com
“The reality looks fairly different 48 hours later. First, I was astonished by how comprehensive and genuinely benevolent our team, clients, partners, and providers were.”
CrowdSec CEO
CrowdSecFrench cybersecurity companyCrowdSec CEOAuthor of the company's post-mortem blog postTanStackOpen-source npm package maintainerMistral AICompany also affected by the TanStack attackOpenAICompany also affected by the TanStack attack
The whole story poststhe bright band is this development · numbered dots are the others · click one to jump
A supply-chain attack became a # databreach . Malicious TanStack npm packages stole a GitHub token from an ex-CrowdSec employee whose access remained active. Attackers copied ~170 private repos and exposed data on 83 users and 51 potential investors: 👇 https:// thehackernews.com/2026/09/crow dsec-says-tanstack-npm-attack-led.html