Hey everyone! Terabytes worth of #credentials, for more than 2500 massive Fortune 500 type orgs have been exposed in a s...

Hey everyone! Terabytes worth of #credentials, for more than 2500 massive Fortune 500 type orgs have been exposed in a supply-chain attack on #LiteLLM. The breach was reported Tuesday and Wednesday by security firms #CloudSEK and #HudsonRock. (Links below) CloudSEK said it found cloud keys, repository tokens, #SSH keys, #Kubernetes secrets, package publishing credentials, environment variables, and AI provider #keys.This, in the world of #infosec, is called A Bad Thing. The fact that some of the credentials are still live, is mind boggling. #ai #security #SupplyChainAttack #hack https://www.cloudsek.com/blog/ai-supply-chain-breach-2500-companies-434000-cicd-pipelinesCompanies exposed: https://exposure.cloudsek.com/ai-supply-chain-incidenthttps://www.hudsonrock.com/blog/largest-ai-supply-chain-breach-of-2026-litellm-hack-impacts-thousands-of-global-enterprises-claim-your-ethical-disclosureArsTecnica overview: https://arstechnica.com/security/2026/08/terabytes-of-credentials-leaked-in-ma...

Read Original

Related