United States
USA
On 24/03/2026, a compromised Trivy dependency used in LiteLLM's CI/CD environment exposed release credentials that attackers used to publish malicious LiteLLM versions 1.82.7 and 1.82.8 through the legitimate PyPI distribution channel. The packages contained credential-stealing code capable of collecting and exfiltrating secrets from downstream systems. LiteLLM reported that the malicious releases were available for about 40 minutes before PyPI quarantined them, and downstream user Mercor later confirmed that it was affected by the LiteLLM supply-chain attack. The incident therefore compromised the integrity of LiteLLM's legitimate software-delivery chain and propagated malicious code to downstream consumers.
Estimated severity
80 / 100
Source reliability
96 / 100
Approximate Date
24/03/2026
Targeted Company
LITELLM
Distribution & Fulfillment
Procurement & Sourcing
Production & Manufacturing
Sales (Retail & Ecommerce)
Warehousing
Service Delivery
Unrecognized Impact
Supply Chain Relations
United States
USA
No other affected countries reported
Target country
United States
Affected countries
Impacted regions
No information
Duration
No information
Financial impact (USD M)
No information
Impact types
Affected sectors
Affected departments
Attack types
Attributed threat actors
Incident Sources
Please rotate your phone