#LiteLLM
LiteLLM, a package for standardizing API calls to LLM models, has been compromised by hackers futuresearch.ai/blog/litellm...
Supply Chain Attack in litellm 1.82.8 on PyPI
litellm version 1.82.8 on PyPI contains a malicious .pth file that harvests SSH keys, cloud credentials, and secrets on every Python startup, then attempts lateral movement across Kubernetes clusters.
futuresearch.ai
March 24, 2026 at 2:50 PM
That and LiteLLM (cold day in hell before litellm lands in my pyproject.toml)
September 26, 2026 at 12:06 AM
...the things I'd do to you? well, I supposed we'd start with redacted-by-litellm
September 21, 2026 at 3:06 PM
I love the python LLM ecosystem
March 24, 2026 at 1:39 PM
LiteLLM offers an AI open source project used by millions that was infected by credential harvesting malware.
Delve did the security compliance on LiteLLM, an AI project hit by malware | TechCrunch
LiteLLM offers an AI open source project used by millions that was infected by credential harvesting malware.
techcrunch.com
March 26, 2026 at 12:09 AM
Echt tolle Woche: Cisco-Quellcode gestohlen, gestern das mit Axios, vor einigen Tagen LiteLLM, Claude Code aus Versehen im NPM-Package veröffentlicht – IT-Systeme werden wie am laufenden Band gehackt …
April 1, 2026 at 4:10 PM
Our first release of 2025: 𝙨𝙢𝙤𝙡𝙖𝙜𝙚𝙣𝙩𝙨, 𝘁𝗵𝗲 𝘀𝗶𝗺𝗽𝗹𝗲𝘀𝘁 𝗹𝗶𝗯𝗿𝗮𝗿𝘆 𝘁𝗼 𝗯𝘂𝗶𝗹𝗱 𝗮𝗴𝗲𝗻𝘁𝗶𝗰 𝘀𝘆𝘀𝘁𝗲𝗺𝘀!

💥 Main logic in ~1000 LoC
🧑‍💻 Agent writes its actions in code! LLMs are much better at writing code than current standard of writing JSON => higher perf
🌍 Any LLM support (h/t LiteLLM)
🛡️ Secure code exec (h/t E2B)
January 1, 2025 at 3:21 PM
Looks like litellm/bifrost but with tailscale identity built in. Neat.
Coding agents crossed a line this year: they’re useful enough that people are going to use them at work, whether the tooling is ready or not. So... here's some tooling!

tailscale.com/blog/apertur...
Aperture by Tailscale, an AI usage and access tool, now in alpha
Aperture is an AI gateway that doesn't get in the way of developers, and works with most AI tools.
tailscale.com
January 27, 2026 at 6:02 PM
permettant d'unifier l'accès à plusieurs fournisseurs avec une API compatible OpenAI ⬇️

github.com/maximhq/bifr...
GitHub - maximhq/bifrost: Fastest LLM gateway (50x faster than LiteLLM) with adaptive load balancer, cluster mode, guardrails, 1000+ models support & <100 µs overhead at 5k RPS.
Fastest LLM gateway (50x faster than LiteLLM) with adaptive load balancer, cluster mode, guardrails, 1000+ models support & <100 µs overhead at 5k RPS. - maximhq/bifrost
github.com
January 25, 2026 at 9:02 AM
This Axios hack is *mind-boggling*. Between this and the litellm thing, we are _very_ close to, like... total hack for vibe-coded apps.
March 31, 2026 at 2:58 PM
PSF Security developers have published incident reports on the LiteLLM & Telnyx #supplychain attacks. Read what happened, who's affected, and what developers & maintainers can do to prepare and protect themselves from future incidents. #security #python
Incident Report: LiteLLM/Telnyx supply-chain attacks, with guidance - The Python Package Index Blog
Python Package Index shares insights and provides guidance following LiteLLM/Telnyx supply-chain attacks
blog.pypi.org
April 2, 2026 at 1:55 PM
Given today's LiteLLM supply chain attack, what are people's preferred development environment sandboxes on MacOS these days?

I think it's time I started running my development environments somewhere where rogue code can't steal all my ~/... credential files
March 24, 2026 at 8:25 PM
Absolutely stellar blog post from @sethmlarson.dev and @miketheman.com about the recent LiteLLM supply chain attack, and what you can do to protect your projects!

Everyone should read this post (and sponsor their _very important_ work!)

blog.pypi.org/posts/2026-0...
Incident Report: LiteLLM/Telnyx supply-chain attacks, with guidance - The Python Package Index Blog
Python Package Index shares insights and provides guidance following LiteLLM/Telnyx supply-chain attacks
blog.pypi.org
April 2, 2026 at 11:42 PM
Oh yeah you’re using Cloudron and LiteLLM.

We wrapped LiteLLM because its enterprise model restricts us.

We’ll swap it out for something fully open source at some point.

OpenWebUI is our placeholder but that’s another that’s … not great.

We should definitely dive deeper.
September 27, 2026 at 11:51 PM
A recent attack on LiteLLM, an open source tool that streamlines AI-driven software development, has exposed access secrets from Microsoft, Amazon, Cisco, Samsung, and Salesforce, among others.
Terabytes of credentials leaked in massive supply-chain attack
The data was scraped and exfiltrated from 2,500 users of a compromised AI package.
arstechnica.com
August 13, 2026 at 3:37 PM
lol LiteLLM was audited by Delve
March 24, 2026 at 7:27 PM
LiteLLM, an important part of AI software infrastructure, has just been compromised. The payload was a stealer that grabbed environment variables, SSH keys, credentials, ..., crypto wallets , then exfiltrated everything. LiteLLM used Trivy (a security scanner). futuresearch.ai/blog/litellm...
Supply Chain Attack in litellm 1.82.8 on PyPI
litellm version 1.82.8 on PyPI contains a malicious .pth file that harvests SSH keys, cloud credentials, and secrets on every Python startup, then attempts lateral movement across Kubernetes clusters....
futuresearch.ai
March 25, 2026 at 8:21 AM
born to fuck men, forced to configure liteLLM
April 3, 2026 at 7:09 PM
Nach der Supply-Chain-Attacke auf LiteLLM konnten Angreifer auf interne Cisco-Daten zugreifen, heißt es. Sourcecode von Cisco und Kunden wurde wohl gestohlen. #Cisco
Bericht: Cyberkriminelle stehlen Quellcode von Cisco und dessen Kunden
Nach der Supply-Chain-Attacke auf LiteLLM konnten Angreifer auf interne Cisco-Daten zugreifen, heißt es. Sourcecode von Cisco und Kunden wurde wohl gestohlen.
www.heise.de
April 2, 2026 at 3:11 AM
Da hat es ganz heftig gerummst 😜🤷‍♂️
heise.de/news/LiteLLM-Ang…
LiteLLM-Angriff: Mehr als 2500 Unternehmen betroffen
IT-Forscher haben Zugriff auf die abgeflossenen Daten von tausenden Firmen beim LiteLLM-Supply-Chain-Angriff aus dem März erhalten.
www.heise.de
August 15, 2026 at 12:25 AM
heads up if you use litellm in python

also: lol

supply chain attacks are the new black
March 24, 2026 at 4:34 PM
If anyone thinks supply chain attacks are only an npm or JS problem, here’s an example from the Python and LLM world.

A single `pip install litellm` and all your access keys are stolen.

futuresearch.ai/blog/litellm...
Supply Chain Attack in litellm 1.82.8 on PyPI
litellm version 1.82.8 on PyPI contains a malicious .pth file that harvests SSH keys, cloud credentials, and secrets on every Python startup, then attempts lateral movement across Kubernetes clusters.
futuresearch.ai
March 24, 2026 at 5:46 PM