[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fOs31Go26q0WGOX_N0BDybQ2eI7f0j2jUse-IcoQq_1E":3},{"article":4,"iocs":48,"watch_terms":54},{"id":5,"title":6,"slug":7,"summary":8,"ai_summary":9,"brief":10,"full_text":11,"url":12,"image_url":13,"published_at":14,"ingested_at":15,"relevance_score":16,"entities":17,"category_id":28,"category":29,"article_tags":32},"a7f81792-2088-4404-9bc4-01c4af918082","Python Supply-Chain Compromise - Schneier on Security","python-supply-chain-compromise-schneier-on-security","This is news: A malicious supply chain compromise has been identified in the Python Package Index package litellm version 1.82.8. The published wheel contains a malicious .pth file (litellm_init.pth, 34,628 bytes) which is automatically executed by the Python interpreter on every startup, without requiring any explicit import of the litellm module. There are a lot of really boring things we need to do to help secure all of these critical libraries: SBOMs, SLSA, SigStore. But we have to do them.","A supply-chain compromise was identified in the Python Package Index package litellm version 1.82.8, which contained a malicious .pth file (litellm_init.pth) that executes automatically on every Python interpreter startup without requiring explicit module import. The incident highlights the need for critical library security measures including SBOMs, SLSA, and SigStore implementations.","Malicious .pth file discovered in litellm v1.82.8 PyPI package executes on Python startup.","Python Supply-Chain Compromise This is news: A malicious supply chain compromise has been identified in the Python Package Index package litellm version 1.82.8. The published wheel contains a malicious .pth file (litellm_init.pth, 34,628 bytes) which is automatically executed by the Python interpreter on every startup, without requiring any explicit import of the litellm module. There are a lot of really boring things we need to do to help secure all of these critical libraries: SBOMs, SLSA, SigStore. But we have to do them. Tags: cybersecurity, malware, supply chain Posted on April 8, 2026 at 6:25 AM • 0 Comments","https:\u002F\u002Fwww.schneier.com\u002Fblog\u002Farchives\u002F2026\u002F04\u002Fpython-supply-chain-compromise.html",null,"2026-04-08T10:25:55+00:00","2026-04-08T11:00:15.792+00:00",9,[18,21,24,26],{"name":19,"type":20},"litellm","product",{"name":22,"type":23},"Python Package Index (PyPI)","technology",{"name":25,"type":23},"SLSA",{"name":27,"type":23},"SigStore","26b0b636-0e31-4db1-bffb-61bdf9f20a58",{"id":28,"icon":13,"name":30,"slug":31},"Supply Chain","supply-chain",[33,38,43],{"category":34},{"id":35,"icon":13,"name":36,"slug":37},"02371804-cf6d-4449-98de-f1a2d4d9b266","Tools","tools",{"category":39},{"id":40,"icon":13,"name":41,"slug":42},"89f78b1c-3503-45a1-9fc7-e23d2ce1c6d5","Malware","malware",{"category":44},{"id":45,"icon":13,"name":46,"slug":47},"ade75414-7914-4e23-a450-48b64546ee70","Open Source","open-source",[49,52],{"type":42,"value":50,"context":51},"litellm_init.pth","Malicious Python .pth file in litellm v1.82.8 PyPI package; 34,628 bytes; auto-executes on interpreter startup",{"type":42,"value":19,"context":53},"Compromised PyPI package, version 1.82.8",[19]]