论坛首页 漏洞分析研究区 阅读主题

AI Infrastructure LiteLLM Supply Chain Poisoning Alert

9 浏览 0 回复
#1 楼主 2026-04-16 13:39:03
Overview Recently, NSFOCUS Technology CERT detected that the GitHub community disclosed that there was a credential stealing program in the new version of LiteLLM. Analysis confirmed that it had suffered supply chain poisoning by the TeamPCP group on PyPI. It stole the publishing permission credentials by hacking into the security scanning tool Trivy used in […]
The post AI Infrastructure LiteLLM Supply Chain Poisoning Alert appeared first on NSFOCUS, Inc., a global network and cyber security leader, protects enterprises and carriers from advanced cyber attacks..

---
来源: NSFOCUS
原文链接: https://nsfocusglobal.com/ai-infrastructure-litellm-supply-chain-poisoning-alert/

暂无回复,快来抢沙发吧!

请登录后参与讨论

立即登录 注册账号