BRIEF-OpenAI Says It Identified A Security Issue Involving A Common Open-Source Library, Tanstack NPM; Found No Evidence That OpenAI User Data Was Accessed

Microsoft Corporation

Microsoft Corporation

MSFT

0.00

-

  • OPENAI: RECENTLY IDENTIFIED A SECURITY ISSUE INVOLVING A COMMON OPEN-SOURCE LIBRARY, TANSTACK NPM

  • OPENAI: FOUND NO EVIDENCE THAT OPENAI USER DATA WAS ACCESSED

  • OPENAI: TAKING STEPS TO PROTECT THE PROCESS THAT CERTIFIES OUR MACOS APPLICATIONS ARE LEGITIMATE OPENAI APPS.

  • OPENAI: NO EVIDENCE THAT PRODUCTION SYSTEMS OR INTELLECTUAL PROPERTY WERE COMPROMISED, OR THAT OUR SOFTWARE WAS ALTERED

  • OPENAI: WE ARE UPDATING OUR SECURITY CERTIFICATES, WHICH WILL REQUIRE ALL MACOS USERS TO UPDATE THEIR OPENAI APPS TO THE LATEST VERSIONS

  • OPENAI: TWO EMPLOYEE DEVICES IN CORPORATE ENVIRONMENT WERE IMPACTED BY SOFTWARE SUPPLY CHAIN ATTACK KNOWN AS MINI SHAI-HULUD⁠

  • OPENAI: ONLY LIMITED CREDENTIAL MATERIAL WAS SUCCESSFULLY EXFILTRATED FROM THESE CODE REPOSITORIES AND THAT NO OTHER INFORMATION OR CODE WAS IMPACTED

Source text: [ID: https://tinyurl.com/4kxnvekv]