Supply ChainMar 24, 2026
Dawg, some DORK compromised LiteLLM and was able to successfully do a supply chain attack impacti...
Attacker compromised LiteLLM and deployed supply chain malware to 97M devices, but payload failed.
Summary
An attacker successfully compromised the LiteLLM open-source library and injected malicious code into a release, creating a supply chain attack with potential reach to 97 million devices. However, the malware payload was poorly constructed and caused application crashes instead of executing intended functionality, resulting in operational failure and early detection.
Indicators of Compromise
- malware — LiteLLM compromised payload