CyberSecurity News
Malicious LiteLLM Releases Tied to Trivy Hack May Have Exposed 2,100+ Organizations
AI summary
Malicious versions of LiteLLM were uploaded to PyPI for a brief period in March, containing code that could steal sensitive credentials. These malicious releases were available for about 40 minutes before being removed. The stolen credentials could include cloud keys, SSH keys, Kubernetes tokens, and database passwords. A dataset obtained by CloudSEK, comprising around 434,000 captured files, suggests that over 2,100 organizations may have been exposed. The dataset is being used to map the potential extent of the exposure.
This is an AI-generated brief aggregated by HackerFeeds for convenience and grounded in the source’s own summary; the related CVE, threat-group and country data is from HackerFeeds’ own indexes. The original article is the authoritative source — all rights belong to The Hacker News.

