Terabytes worth of credentials, many belonging to the worlds biggest and most sensitive organizations, have been exposed in a supply chain attack on LiteLLM, an open source tool that streamlines AI driven software development. Microsoft, Amazon, Cisco, Samsung, and Salesforce are only a handful of the entities whose access secrets were exposed. The revelation was posted on Tuesday and Wednesday by security firms CloudSEK and Hudson Rock. CloudSEK said it found cloud keys, repository tokens, SSH...

Read the full article at Arstechnica