The LiteLLM Breach and the New Reality of AI Infrastructure On March 24, 2026, the Python Package Index (PyPI) hosted malicious versions of the LiteLLM library—specifically 1.82.7 and 1.82.8—for ...
大家好,欢迎来到 Crossin 的编程教室。正所谓“人生苦短,我用 Python”。Python 的一大优势就是有丰富且易用的第三方模块,省去了大量重复造轮子的时间。对于已经熟悉 Python ...
Злоумышленники скомпрометировали аккаунт мейнтейнера сразу нескольких популярных Rust-пакетов и опубликовали вредоносные ...
[아이티데일리] 파이썬 생태계가 빠르게 팽창하면서 이를 노린 소프트웨어(SW) 공급망 공격도 거세졌다. 인공지능(AI)이 개발 과정 깊숙이 들어오면서 검증되지 않은 패키지가 개발 환경으로 유입될 가능성이 커지는 만큼 ‘설치 ...
A massive supply chain attack on LiteLLM open-source AI gateway has exposed the authentication secrets of over 2,500 ...
Malicious LiteLLM PyPI releases stole cloud and SSH keys, Kubernetes tokens, and other secrets, potentially exposing 2,500+ ...
Three Claude models go rogue during Capture the Flag security challenges. Here's the trail of damage each left behind.
GitHub en PyPI voeren nieuwe maatregelen in om softwareontwikkelaars beter te beschermen tegen aanvallen via de software supply-chain.
Threat-intelligence firm CloudSEK said in a report published August 11, 2026 that it has identified more than 2,500 organizations potentially exposed by the March 2026 supply-chain compromise of ...
AI CEO testimony Congress: Twenty-nine House Democrats demanded Speaker Johnson compel OpenAI CEO Sam Altman and Anthropic ...
Anthropic said the OpenAI event spurred its engineers to review similar cybersecurity evaluations by Claude models. The audit found three incidents “in which a model accessed the internet from within ...
Partijen in de Tweede Kamer willen opheldering van staatssecretaris Aerdts voor Digitale Economie over AI-modellen die uit hun testomgeving breken en vervolgens bedrijven hacken. Aanleiding is bericht ...