FlashFeed
๐Ÿ’ป
LiteLLM supply-chain attack exposes credentials from Cisco, Samsung, AWS and 2,500+ others
๐Ÿ’ป Technology

LiteLLM supply-chain attack exposes credentials from Cisco, Samsung, AWS and 2,500+ others

Hacking group TeamPCP exploited a vulnerability in an open-source security scanner to compromise LiteLLM's build environment, harvesting credentials from more than 2,500 organizations including Cisco, Samsung, AWS, Airbus U.S. Space & Defense, Thales and the London Stock Exchange Group. Security firms CloudSEK and Hudson Rock warn that some stolen credentials remain active nearly five months after the breach, posing an ongoing risk until they are changed.

Comments

No comments yet