https://www.hiddenlayer.com/research/litellm-supply-chain-attack (opens in new tab)
Critical LiteLLM supply chain attack exposes credentials via malicious PyPI packages (v1.82.7–1.82.8), enabling data exfiltration, persistence, and Kubernetes cluster compromise—learn how to detect and respond.
Read the original article