Digital Event Horizon
Terabytes of sensitive credentials have been exposed in a massive supply-chain attack on LiteLLM, an open-source tool that streamlines AI-driven software development. The breach has affected over 430,000 CI/CD software pipelines and includes cloud keys, repository tokens, SSH keys, Kubernetes secrets, package publishing credentials, environment variables, and AI provider keys from top organizations worldwide.
A terabytes of sensitive credentials were exposed in a massive supply-chain attack on LiteLLM, an open-source tool used for AI-driven software development.The attack was carried out by TeamPCP, a gang of teenagers, and affected 2,500 users of the compromised LiteLLM package.The breach gave attackers access to over 430,000 CI/CD software pipelines belonging to major organizations.Organizations such as Microsoft, Amazon, and Samsung were among those affected by the breach.Security firms are urging organizations to rotate credentials, revoke secrets, and audit logging to mitigate the damage.
In a shocking revelation, terabytes of sensitive credentials have been exposed in a massive supply-chain attack on LiteLLM, an open-source tool that streamlines AI-driven software development. The data, which includes cloud keys, repository tokens, SSH keys, Kubernetes secrets, package publishing credentials, environment variables, and AI provider keys, was scraped and exfiltrated from 2,500 users of the compromised LiteLLM package.
The attack, which occurred in March, was carried out by a gang of teenagers known as TeamPCP, who took credit for the breach. According to independent security researcher Kevin Beaumont, the data contains "a significant volume of sensitive content at orgs" and is a result of poor AI security, not because AI itself is the threat.
The compromised versions of LiteLLM contained code that accessed the memory of infected machines, scraped its contents, and exfiltrated it through an attacker-controlled channel. This allowed attackers to gain access to more than 430,000 CI/CD software pipelines, many belonging to the world's biggest and most sensitive organizations.
Organizations affected by the breach include Microsoft, Amazon, Cisco, Samsung, Salesforce, Nvidia Corporation, Air Force, John Deere, Regeneron Pharmaceuticals, Inc., London Stock Exchange Group (LSEG), Thomson Reuters, FedEx, Munich Remunichre.com, MediaTek Inc., Volkswagen AG, Deloitte, The Kroger Co., Siemens Energy, Thales Group, X Corp (Twitter), Zscaler, Inc., Epic Games, Orange S.A., HP Inc., Philips, Fortum Oyj, Vodafone Group Plc, Carl Zeiss AG, Deutsche Bahn AG, NGINX, Inc., BT Group, Liebherr, Krungthai Bank Public Company Limited, and Roku, Inc.
Both security firms CloudSEK and Hudson Rock are urging organizations that used the compromised versions of LiteLLM to thoroughly rotate all credentials in their pipelines. They are also advising them to perform "aggressive credential revocation," assume any secret accessible to the LiteLLM environment is compromised, invalidate and rotate all cloud keys, Kubernetes service account tokens, and GitLab/GitHub PATs, and audit logging and egress filtering.
The attack highlights the growing threat of supply-chain attacks and the importance of maintaining vigilance around the use of open-source software that, when infected, can spread rapidly across the Internet. As Alon Gal, co-founder and chief technology officer of Hudson Rock, noted, "The key takeaway is how supply chains have evolved to make a single upstream breach affect thousands of companies simultaneously."
The incident serves as a cautionary tale for organizations that rush to integrate AI into their software delivery systems, as seen in the case where one US tech company reported they had rotated their credentials but ultimately found many still active.
Related Information:
https://www.digitaleventhorizon.com/articles/A-Massive-Supply-Chain-Attack-Exposes-Terabytes-of-Sensitive-Credentials-deh.shtml
https://arstechnica.com/security/2026/08/terabytes-of-credentials-leaked-in-massive-supply-chain-attack/
Published: Wed Aug 12 18:04:03 2026 by llama3.2 3B Q4_K_M