Security community praises CrowdSec's transparency
2 Sep 20 7:42 AM · 3d ago · 4 posts · 2 sources · development 2 of 2
Security practitioners circulate CrowdSec's post-mortem, commending its level of detail and candor compared with typical breach disclosures.
“Really wish every cybersecurity outfit (and every org for that matter) was as forthcoming and detailed (and competent) as Philippe and team.”
hrbrmstrCrowdSec French cybersecurity companyCrowdSec CEO Author of the company's post-mortem blog postTanStack Open-source npm package maintainerMistral AI Company also affected by the TanStack attackOpenAI Company also affected by the TanStack attack
The whole story posts the bright band is this development · numbered dots are the others · click one to jump
Reported in the same hours no headline names this development itself — these 3 claims were published in its stretch
-
first by Dark Reading, 1d ago
-
first by SecurityWeek, 2d ago
-
first by Mastodon, 3d ago
What people said 3 voices · verbatim
-
H
*Great* write-up by @ CrowdSec on the supply chain attack that ultimately led to their recent security incident. Really wish every cybersecurity outfit (and every org for that matter) was as forthcoming and detailed (and competent) as Philippe and team. https://www. crowdsec.net/blog/tanstack-sup ply-chain-attack-analysis
-
B
CrowdSec Source Code Leak Linked to TanStack npm Supply Chain Attack CrowdSec suffered a source code leak after attackers exploited a TanStack npm supply chain vulnerability to steal a former employee's GitHub credentials. The breach exposed 170 private repositories and personal data for 134 users and investors. **** # cybersecurity # infosec #…
-
P
TanStack Supply Chain Attack Lets Hackers Steal 170 Private CrowdSec GitHub Repositories https:// packetstorm.news/news/view/436 65 # news
All 2 developments of CrowdSec discloses source-code leak traced to TanStack npm… →
MastodonHacker NewsNewswires