LiteLLM Supply Chain Compromise
netspi.com | incident | #ai-security | #supply-chain | #incident-response | #credential-theft | #pypi | #llm | #cicd | #litellm
Summary
Malicious PyPI builds of LiteLLM 1.82.7/1.82.8, published via a compromised maintainer account, exfiltrated API keys and system data, exposing a user's entire LLM provider surface.
- Published
- Collected
Skip to content