Video wird geladen...

Video konnte nicht geladen werden

Zur Startseite

LiteLLM hack summary: What is it, why it's smart to target it, and how it happened (so far)

156,320 Aufrufe • vor 6 Monaten •via X (Twitter)

22 Kommentare

Profilbild von solst/ICE of Astarte
solst/ICE of Astartevor 6 Monaten

Another banger by TeamPCP Links: Github issue:

Profilbild von solst/ICE of Astarte
solst/ICE of Astartevor 6 Monaten

Thread on cursed orange site

Profilbild von solst/ICE of Astarte
solst/ICE of Astartevor 6 Monaten

nanobot impacted:

Profilbild von solst/ICE of Astarte
solst/ICE of Astartevor 6 Monaten

The LiteLLM line using Trivy

Profilbild von solst/ICE of Astarte
solst/ICE of Astartevor 6 Monaten

The original blog post that found it

Profilbild von solst/ICE of Astarte
solst/ICE of Astartevor 6 Monaten

Great blog post by @safedepio

Profilbild von solst/ICE of Astarte
solst/ICE of Astartevor 6 Monaten

Hermes PSA

Profilbild von solst/ICE of Astarte
solst/ICE of Astartevor 6 Monaten

Timeline and IoCs by @ramimacisabird

Profilbild von solst/ICE of Astarte
solst/ICE of Astartevor 6 Monaten

YouTube:

Profilbild von solst/ICE of Astarte
solst/ICE of Astartevor 6 Monaten

Another great blog post here:

Profilbild von Precogs AI
Precogs AIvor 6 Monaten

We have written a detailed article about it:

Profilbild von solst/ICE of Astarte
solst/ICE of Astartevor 6 Monaten

Nice one

Profilbild von mRr3b00t
mRr3b00tvor 6 Monaten

love this

Profilbild von Ac1d
Ac1dvor 6 Monaten

is this you or someone from Astarte?

Profilbild von Ac1d
Ac1dvor 6 Monaten

teampcp undercover?

Profilbild von Jacko ⚡️
Jacko ⚡️vor 6 Monaten

Maybe someone should leek the package list of all those packages that use it. Then maybe consider a `pip blame --uninstall litellm`.

Profilbild von MAKVision
MAKVisionvor 6 Monaten

"it's just a dependency" — last words before 50,000 production environments become someone else's lab rats.

Profilbild von 👩🏻‍💻 JustAskPenny
👩🏻‍💻 JustAskPennyvor 6 Monaten

@grok what was the root cause to this issue.

Profilbild von JP Aumasson
JP Aumassonvor 6 Monaten

great explainer, thank you!

Profilbild von MiamiCanes
MiamiCanesvor 6 Monaten

Great breakdown, crazy how good these hackers are getting! 👨‍💻🔒

Profilbild von Zulfikar Ramzan (He / Him)
Zulfikar Ramzan (He / Him)vor 6 Monaten

Excellent breakdown. The attacker realized that by targeting the AI routing layer, they get the keys to the entire kingdom (OpenAI, AWS, Anthropic) in a single strike. The scariest part is how easily it slipped past legacy SCA tools because there was no CVE. We have to shift to analyzing the actual behavior of our dependencies. My team just open-sourced a CLI (wtmp) to hunt for exactly these types of zero-day credential harvesting mechanisms. Flashlight for your repos:

Profilbild von Unicity
Unicityvor 6 Monaten

Wrote this breakdown take a look

Ähnliche Videos