Video yükleniyor...

Video Yüklenemedi

Ana Sayfaya Dön

LiteLLM hack summary: What is it, why it's smart to target it, and how it happened (so far)

156,320 görüntüleme • 6 ay önce •via X (Twitter)

22 Yorum

solst/ICE of Astarte profil fotoğrafı
solst/ICE of Astarte6 ay önce

Another banger by TeamPCP Links: Github issue:

solst/ICE of Astarte profil fotoğrafı
solst/ICE of Astarte6 ay önce

Thread on cursed orange site

solst/ICE of Astarte profil fotoğrafı
solst/ICE of Astarte6 ay önce

nanobot impacted:

solst/ICE of Astarte profil fotoğrafı
solst/ICE of Astarte6 ay önce

The LiteLLM line using Trivy

solst/ICE of Astarte profil fotoğrafı
solst/ICE of Astarte6 ay önce

The original blog post that found it

solst/ICE of Astarte profil fotoğrafı
solst/ICE of Astarte6 ay önce

Great blog post by @safedepio

solst/ICE of Astarte profil fotoğrafı
solst/ICE of Astarte6 ay önce

Hermes PSA

solst/ICE of Astarte profil fotoğrafı
solst/ICE of Astarte6 ay önce

Timeline and IoCs by @ramimacisabird

solst/ICE of Astarte profil fotoğrafı
solst/ICE of Astarte6 ay önce

YouTube:

solst/ICE of Astarte profil fotoğrafı
solst/ICE of Astarte6 ay önce

Another great blog post here:

Precogs AI profil fotoğrafı
Precogs AI6 ay önce

We have written a detailed article about it:

solst/ICE of Astarte profil fotoğrafı
solst/ICE of Astarte6 ay önce

Nice one

mRr3b00t profil fotoğrafı
mRr3b00t6 ay önce

love this

Ac1d profil fotoğrafı
Ac1d6 ay önce

is this you or someone from Astarte?

Ac1d profil fotoğrafı
Ac1d6 ay önce

teampcp undercover?

Jacko ⚡️ profil fotoğrafı
Jacko ⚡️6 ay önce

Maybe someone should leek the package list of all those packages that use it. Then maybe consider a `pip blame --uninstall litellm`.

MAKVision profil fotoğrafı
MAKVision6 ay önce

"it's just a dependency" — last words before 50,000 production environments become someone else's lab rats.

👩🏻‍💻 JustAskPenny profil fotoğrafı
👩🏻‍💻 JustAskPenny6 ay önce

@grok what was the root cause to this issue.

JP Aumasson profil fotoğrafı
JP Aumasson6 ay önce

great explainer, thank you!

MiamiCanes profil fotoğrafı
MiamiCanes6 ay önce

Great breakdown, crazy how good these hackers are getting! 👨‍💻🔒

Zulfikar Ramzan (He / Him) profil fotoğrafı
Zulfikar Ramzan (He / Him)6 ay önce

Excellent breakdown. The attacker realized that by targeting the AI routing layer, they get the keys to the entire kingdom (OpenAI, AWS, Anthropic) in a single strike. The scariest part is how easily it slipped past legacy SCA tools because there was no CVE. We have to shift to analyzing the actual behavior of our dependencies. My team just open-sourced a CLI (wtmp) to hunt for exactly these types of zero-day credential harvesting mechanisms. Flashlight for your repos:

Unicity profil fotoğrafı
Unicity6 ay önce

Wrote this breakdown take a look

Benzer Videolar