Sicurezza AI · Supply chain
LiteLLM distribuiva malware che ha rubato credenziali cloud Un dependency su PyPI del progetto open-source LiteLLM conteneva malware per il credential harvesting, secondo ricercatori e vendor. LiteLLM instrada richieste fra AI models e può accedere a environment variables, SSH keys e API tokens. Snyk riporta fino a 3.4 milioni di download al giorno, ampliando il rischio lungo la supply chain.
1 fonte · 31 mar
Cronologia Fonti 31 mar TechCrunch Security
Popular AI gateway startup LiteLLM ditches controversial startup Delve | TechCrunch
LiteLLM had obtained two security compliance certifications via Delve and fell victim to some horrific credential-stealing malware last week.
originale 26 mar TechCrunch Security
Silicon Valley's two biggest dramas have intersected: LiteLLM and Delve | TechCrunch
LiteLLM offers an AI open source project used by millions that was infected by credential harvesting malware.
originale 26 mar TechCrunch Security
Delve did the security compliance on LiteLLM, an AI project hit by malware | TechCrunch
originale Part of the PlainSec briefing for 2026-03-27
Every edition of this story: LiteLLM distribuiva malware che ha rubato credenziali cloud
Sicurezza AI · Supply chain
LiteLLM distribuiva malware che ha rubato credenziali cloud Un dependency su PyPI del progetto open-source LiteLLM conteneva malware per il credential harvesting, secondo ricercatori e vendor. LiteLLM instrada richieste fra AI models e può accedere a environment variables, SSH keys e API tokens. Snyk riporta fino a 3.4 milioni di download al giorno, ampliando il rischio lungo la supply chain.
1 fonte · 31 mar
Cronologia Fonti 31 mar TechCrunch Security
Popular AI gateway startup LiteLLM ditches controversial startup Delve | TechCrunch
LiteLLM had obtained two security compliance certifications via Delve and fell victim to some horrific credential-stealing malware last week.
originale 26 mar TechCrunch Security
Silicon Valley's two biggest dramas have intersected: LiteLLM and Delve | TechCrunch
LiteLLM offers an AI open source project used by millions that was infected by credential harvesting malware.
originale 26 mar TechCrunch Security
Delve did the security compliance on LiteLLM, an AI project hit by malware | TechCrunch
originale Part of the PlainSec briefing for 2026-03-27
Every edition of this story: LiteLLM distribuiva malware che ha rubato credenziali cloud