Skip to content
theAIcatchup
AI Business AI Ethics AI Hardware AI Research
AI Tools Computer Vision Large Language Models Robotics

#litellm-attack

🤖

OpenAI Swallows Astral: Dev Tools Tilt Toward AI Giants

OpenAI just grabbed Astral, the hot dev tool startup. It's a stark signal: AI labs aren't just building models anymore—they're hoarding the tools devs need to wield them.

4 min read 4 weeks ago
🤖

LiteLLM's PyPI Poison: How Hackers Turned an AI Gateway into a Secret-Scavenger

Two PyPI uploads in March 2026 transformed LiteLLM – your go-to AI proxy – into a data vacuum. It rifled through servers for AWS creds, DB configs, even crypto wallets, all while you imported it blindly.

5 min read 4 weeks, 1 day ago
🤖

LiteLLM's Sneaky Supply-Chain Hack Just Bitten Its First Big AI Victim: Mercor

What if the very libraries powering your AI dreams were secretly phoning home to hackers? Mercor, the hot AI recruiting firm, just admitted it's among thousands snared in the LiteLLM supply-chain nightmare.

5 min read 4 weeks, 1 day ago
LiteLLM code vulnerability leading to data exfiltration in AI pipeline
Large Language Models

LiteLLM Supply Chain Attack: Patched Code, Unseen Data Leaks

Engineers raced to patch LiteLLM after malware slipped in. But for victims like Mercor, the real damage was already done: stolen creds, exfiltrated code.

4 min read 4 weeks, 1 day ago
Terminal window installing malicious LiteLLM package with credential paths exposed

LiteLLM's Poisoned PyPI Packages Turned Dev Laptops Into Open Credential Safes

One pip install, and your AWS keys were gone. The LiteLLM attack shows developer laptops aren't just tools—they're attacker playgrounds loaded with plaintext secrets.

4 min read 4 weeks, 1 day ago
Mercor AI recruiting platform interface with red breach alert overlay and LiteLLM logo

Mercor's 4TB Nightmare: LiteLLM's Supply Chain Poison Reaches AI Hiring Giant

LiteLLM lurks in 36% of cloud environments — and now it's bitten Mercor hard. Extortionists boast 4TB of pilfered data, from video interviews to VPN creds.

4 min read 1 month ago

Categories

AI Business AI Ethics AI Hardware AI Research AI Tools Computer Vision Large Language Models Robotics
theAIcatchup

AI news that actually matters.

More

  • RSS Feed
  • Sitemap
  • About
  • Editorial Process
  • Advertise

Legal

  • Privacy
  • Terms
  • Work With Us

Our Network

The AI Catchup AI & Machine Learning Threat Digest Cybersecurity Legal AI Beat Legal Tech Fintech Rundown Finance & Banking DevTools Feed Developer Tools Open Source Beat Open Source Fintech Dose Crypto & DeFi Chip Beat Semiconductors AdTech Beat Ad Technology Supply Chain Beat Logistics

© 2026 theAIcatchup. All rights reserved.

🏠Home 🔍Search 🔖Saved 📂Categories
Privacy & cookies

We use a privacy-respecting analytics tool to count page views — no personal profiles, no ad tracking, no third-party cookies. Accept to help us understand which stories matter to readers.

Details