An attacker poisoned 84 TanStack npm versions across 42 packages, stealing GitHub OIDC tokens and cloud keys while planting a ...
GitHub has rolled out new controls for npm to improve the security of the software supply chain, giving maintainers the ...