OpenAI says hackers stole some data after latest code security issue

TL;DR AI
2 min readKey summary
OpenAI confirmed a supply-chain attack via a compromised TanStack release affected two employees with malware.
Attackers accessed limited credentials from internal code repositories, but user data, production systems, and software were not compromised.
The incident highlights how trusted open-source projects can become a pathway to credential theft and broader downstream risk.



