Malicious LiteLLM Releases Tied to Trivy Hack May Have Exposed 2,100+ Organizations

Summary

Two malicious versions of the LiteLLM Python library were discovered on PyPI containing code that could steal sensitive credentials. These malicious releases were active for approximately 40 minutes and may have exposed over 2,100 organizations by harvesting cloud keys, SSH keys, and other secrets.

IFF Assessment

FOE

The discovery of malicious code in a popular library that harvests sensitive credentials represents a significant threat to organizations and defenders.

Defender Context

This incident highlights the risks associated with supply chain attacks, where malicious code can be injected into widely used software packages. Defenders should remain vigilant about the security of their software supply chains, implement strict dependency management, and monitor for any unexpected behavior or credential exposure in their environments.

Read Full Story →