OpenAI says no user data stolen after supply-chain hackers accessed employee devices
OpenAI has said it found no evidence that user data was accessed following a security issue linked to a supply-chain attack involving the open-source TanStack npm library.
The company said in a security update published on its official website that the issue was part of a broader software supply-chain attack campaign known as “Mini Shai-Hulud”, which targeted open-source developer ecosystems including npm and PyPI.
