Tag

#LiteLLM

7 stories taggedLiteLLM.

A network infrastructure diagram showing thousands of LiteLLM gateways exposed on the public internet, with a default demo administrative key 'sk-1234' highligh
AI Security

One in Ten Exposed LiteLLM Gateways Still Use the Demo Admin Key 'sk-1234'

Wiz Research found thousands of AI gateways sitting on the public internet with the example password from the setup guide still in place.

4 min read
A network operations center displaying security alerts and vulnerability notifications on multiple screens, with CISA threat bulletin information visible on the
Vulnerabilities

CISA flags seven actively exploited flaws, including two in SonicWall SMA1000 boxes

The US cyber agency's Known Exploited Vulnerabilities catalog picks up bugs in Sangoma, JFrog, LiteLLM, Kestra, Starlette and a pair in SonicWall's remote access appliances.

4 min read
Police vehicles and law enforcement activity outside a technology-related facility in Western Australia, with digital security imagery on nearby screens
Threat Intelligence

Australian Police Arrest Two Alleged Members of Supply-Chain Extortion Crew TeamPCP

The Western Australia arrests target a group blamed for a year-long run of open-source software attacks, including the Shai-Hulud worm that hit thousands of companies.

4 min read
Cybersecurity incident timeline chart on a large monitor showing the LiteLLM package compromise alongside the separate Trivy scanner vulnerability, with data da
Threat Intelligence

Most of the 2,500 organisations hit in the LiteLLM attack were actually victims of a different breach entirely

A closer look at the data shows the Trivy scanner compromise, not the LiteLLM package, caused almost all the damage, and stolen credentials are already on sale.

4 min read
A large dataset visualization showing 434,000 files being extracted from servers, PyPI package registry interface visible, stolen data flowing across network pa
Threat Intelligence

Poisoned LiteLLM Packages on PyPI May Have Leaked Secrets From 2,100 Organisations

CloudSEK says a 434,000-file dataset stolen during a 40-minute window in March traces back to two malicious releases of the popular AI gateway library.

3 min read
A developer's workstation screen showing lines of code being examined under a magnifying glass, with warning symbols floating in the digital space around it, re
AI Security

Criminals Poisoned a Python Package Downloaded 95 Million Times a Month. AI Developers Were the Target.

On 24 March 2026, attackers slipped malicious code into LiteLLM, a software tool used by AI developers worldwide. Three hours online was enough to reach tens of thousands of companies.

4 min read
Illustration: A vast dark server room bathed in cold blue light, rows of black server racks receding into the distance
AI Security

Cryptomining attack on an AI gateway reveals a much bigger cloud security problem

Hackers broke into an Amazon cloud server acting as a doorway to AI services, planted mining software, and probed for wider access. The real worry is how much power these AI gateways hold.

3 min read
© 2026 Threat Vectr