Malicious LiteLLM Releases Tied to Trivy Hack May Have Exposed 2,100+ Organizations
Summary
Two malicious LiteLLM releases sat on PyPI for about 40 minutes in March carrying credential-stealing code capable of harvesting cloud keys, SSH keys, Kubernetes tokens, database passwords, and other secrets from systems that installed them. Threat intelligence firm CloudSEK now says a dataset it obtained, built from roughly 434,000 files the attackers captured, maps potential exposure to more
Lotu Radar provides attributed news summaries and links to the original publisher. Full reporting and copyright remain with the source.