LiteLLM supply chain attack hit 2,488 organisations Security researchers at Hudson Rock and CloudSEK obtained a 153GB archive containing 433,909 files from 2,488 organizations affected by the LiteLLM supply chain attack, which targeted versions 1.82.7 and 1.82.8. Victims include Nvidia, AWS, Samsung, Boeing, and Intel, with 118,829 CI/CD runner dumps exposing signing secrets and AI provider API keys in plaintext. The attack, attributed to TeamPCP, is one of the largest of its kind, and affected organizations are advised to treat all secrets in their environments as compromised. ‼️🚨 BREAKING: Security researchers have uncovered all of those who fell victim to the LiteLLM supply chain attack by obtaining its archive: 153GB holding 433,909 files from 2,488 organisations. According to Hudson Rock and CloudSEK, victims include Nvidia, AWS, Samsung, Boeing, Intel and more. This is one of the biggest hits by TeamPCP yet. The archive contains 118,829 CI/CD runner dumps attributed to corporate domains, with signing secrets and AI provider API keys sitting in plaintext. If you ran LiteLLM 1.82.7 or 1.82.8, assume every secret in that environment is burned. International Cyber Digest on X: "‼️🚨 BREAKING: Security researchers have uncovered all of those who fell victim to the LiteLLM supply chain attack by obtaining its archive: 153GB holding 433,909 files from 2,488 organisations. According to Hudson Rock and CloudSEK, victims include Nvidia, AWS, Samsung, Boeing, https://t.co/hnRFOLzQXO" - Local llm is the only way to escape from this kind of supply chain attack