Hackers hijacked 42 npm packages in six minutes by poisoning GitHub Actions pipelines
TL;DR
On May 11 between 19:20 and 19:26 UTC, attackers compromised 42 TanStack npm packages and published 84 malicious versions by exploiting GitHub Actions cache poisoning and unsafe workflow permissions without ever stealing npm credentials directly.
The malware, which ran automatically on package installation, harvested cloud credentials from AWS, GCP, Kubernetes, GitHub, SSH keys, and npm configs from developer machines and CI environments, then attempted to self-propagate to other packages maintained by affected developers.
External security researchers detected the breach within roughly 20 minutes; TanStack has since removed unsafe workflow patterns, pinned GitHub Actions to immutable SHAs, purged caches, added stricter publishing controls, and acknowledged that it learned of the attack from outside researchers, not its own monitoring.
Intelligence
For developers and engineering teams building on open source tooling, particularly those using GitHub Actions for automated deployments, this attack confirms that CI/CD pipelines are now a primary target, not an afterthought.
Any team running pull_request_target workflows or relying on shared GitHub Actions caches without strict isolation should audit those configurations in the next 30 days, as the attack pattern used here requires no stolen passwords and leaves few obvious traces.
Over the next 6–12 months, enterprises and funded startups in Lagos and across Africa that are scaling engineering teams and adopting cloud-native infrastructure will face growing exposure to supply-chain attacks as their dependency footprints expand.
Funding extracted from this article
0No funding rounds were extracted from this article.
Regulatory activity extracted
0No regulatory actions were extracted from this article.
Tenders extracted
0No tenders were extracted from this article.
Further reading
More on the companies named in this article.
- AWS Introduces Amazon S3 Annotations
- SA’s Supascale launches Africa’s first GPU cloud marketplace
- Infrastructure is Ready for CBN’s Data Localisation Order, OADC CEO Tells Banks and Fintechs
- AWS Introduces Workload Credentials Provider for Automated Certificate and Secret Management
- AWS Weekly Roundup: What’s Next with AWS 2026, Amazon Quick, OpenAI partnership, and more (May 4, 2026)
- Laravel Installer Now Returns JSON When Running Inside an AI Agent
- GitLab 19.0 Embeds Agentic AI in Secrets, Merge Requests, and Supply Chain Security
- GitHub Expands Secret Scanning with General Availability of MCP Server Integration
- Google Introduces Cloud Fraud Defense as Successor to reCAPTCHA
- GitHub will start paying some bug bounty hunters in swag instead of cash
Companies named
4People named
0No people were extracted from this article.
Elsewhere on these companies
Other recorded activity involving the same companies.