Supply‑Chain Attack Hits LiteLLM 1.82.7‑1.82.8 via Compromised Trivy Scan
Independent analysis has verified that the LiteLLM releases 1.82.7 through 1.82.8 were tampered with during distribution. Attackers inserted a malicious payload through a compromised Trivy container‑image scan, turning the library into a backdoor that activates when AI workloads load the compromised package. The code harvests