Mini Shai-Hulud Supply Chain Worm Compromises Mistral AI, Guardrails AI and TanStack Packages
The TeamPCP threat actor has executed a broad supply chain campaign dubbed Mini Shai-Hulud, injecting credential-stealing malware into npm and PyPI packages from major AI and developer tooling …
AML.T0010 - ML Supply Chain Compromise
AML.T0047 - ML-Enabled Product or Service
AML.T0018 - Backdoor ML Model