What the LiteLLM Breach Teaches Us About Securing LLM Gateways
Two LiteLLM releases, 1.82.7 and 1.82.8, were published to PyPI with a credential stealer inside after attackers tracked as TeamPCP stole a PyPI publishing token via a compromised Trivy GitHub Action,…