LiteLLM Supply-Chain Attack Leaked Credentials from 2,500+ Organizations in 40-Minute Window
A supply-chain attack on LiteLLM exposed terabytes of credentials from over 2,500 organizations including Microsoft, Amazon, Nvidia, and Cisco. The breach occurred through compromised versions on PyPI during a 40-minute window in March, linked to TeamPCP's earlier Trivy hack.