The Hacker News

Malicious LiteLLM Releases Tied to Trivy Hack May Have Exposed 2,100+ Organizations

Two malicious LiteLLM releases sat on PyPI for about 40 minutes in March carrying credential-stealing code capable of harvesting cloud keys, SSH keys, Kubernetes tokens, database passwords, and other secrets from systems that installed them. Threat intelligence firm CloudSEK now says a dataset it obtained, built from roughly 434,000 files the attackers captured, maps potential exposure to more

بقلم The Hacker News

1 دقيقة قراءة
Malicious LiteLLM Releases Tied to Trivy Hack May Have Exposed 2,100+ Organizations
Malicious LiteLLM Releases Tied to Trivy Hack May Have Exposed 2,100+ Organizations

هل لديك أخبار لمشاركتها مع صناعة الفعاليات؟

أرسل بياناً صحفياً أو تلميحاً بقصة وتواصل مع آلاف المهنيين في مجال الفعاليات.

تواصل معنا→

المزيد في Cybersecurity, Cryptography & Digital Trust

رؤى ذات صلة