CrowdSec Says TanStack npm Attack Led to Copy of 170 Private GitHub Repositories

An attacker copied about 170 of CrowdSec's private GitHub repositories on May 22 using the account of an employee who had just left, CrowdSec said on September 18. This incident highlights the pervasive risks associated with supply chain attacks, demonstrating how vulnerabilities in third-party developer tools can directly lead to the exfiltration of sensitive source code.

https://meta-news.info/ver/crowdsecโ€ฆ