THE LiteLLM supply chain attack impacted over 2,500 organizations and 434,000 CI/CD pipelines, following a compromise of Aqua Security's Trivy vulnerability scanner. Hackers exploited compromised versions of LiteLLM, a Python library pushed to PyPI, which contained malicious code that executed automatically upon invocation. Although the affected versions were live for only 40 minutes, they exposed sensitive credentials and secrets, including cloud keys and SSH tokens.
Major companies like Nvidia and AWS were affected, leading to recommendations for organizations to treat any secrets accessible to LiteLLM as compromised and rotate them accordingly. The incident highlights potential future threats targeting AI infrastructure due to its critical role in data and identity management.