Terabytes of credentials belonging to major organizations, including Microsoft, Amazon, Cisco, Samsung, and Salesforce, were exposed in a supply-chain attack on LiteLLM, an open-source AI development tool. Security firms CloudSEK and Hudson Rock reported the breach, with CloudSEK finding cloud keys, tokens, and other secrets that could compromise over 2,500 organizations.
The credentials were stolen during a 40-minute window in March through compromised LiteLLM versions downloaded from the Python Package Index. Hudson Rock analyzed a 195TB file containing the data, but neither firm identified the source of the leak.
Comments