litellm PyPI supply chain attack targeting AI engineers and credential exfiltration risks
The Thread We Were Hanging By Every AI engineer reading this should stop what they are doing and pay attention. This week, Andrej Karpathy flagged one of the most alarming supply chain attacks I have seen target our specific corner of the software world. The litellm package on PyPI was poisoned. A single pip install…
