---
title: A 40-Minute Breach of One AI Developer Tool Exposed Credentials at 434,000 Software Pipelines
description: A 40-minute supply-chain attack on the open-source tool LiteLLM exposed credentials across 434,000 CI/CD pipelines, including at Microsoft, Amazon and Cisco.
author: Darie Nani (Editor-in-Chief)
date: 2026-08-13T13:33:07.605Z
updated: 2026-08-13T13:33:07.618Z
canonical: https://www.sovereignmagazine.com/article/litellm-supply-chain-attack-434000-pipelines
image: https://cdn.nanimediahouse.com/litellm-supply-chain-breach-149554.webp
categories: Science &amp; Tech
content_type: News
region: Global
publication: Sovereign Magazine
access: members
schema_type: Article
---

In March, attackers spent about 40 minutes harvesting credentials from companies that had installed two tampered versions of LiteLLM, an open-source tool that streamlines AI-driven software development. The theft stayed quiet until this week. On Tuesday and Wednesday the security firms CloudSEK and Hudson Rock disclosed that terabytes of access secrets had spilled out of the compromise, many of them belonging to the world's largest and most sensitive organizations. Microsoft, Amazon, Cisco, Samsung and Salesforce are among the entities whose secrets appeared in the data.

The victims were running code they had every reason to trust. The malicious LiteLLM builds sat in the Python Package Index, or PyPI, the official location where developers download the package. Anyone who pulled versions 1.82.7 or 1.82.8 during the window got software that read the memory of the machine it ran on, scraped the contents, and sent them out through a channel the attackers controlled.

## The credentials came from 434,000 build pipelines

---

*This article is only available to registered readers. Visit the article URL to read the full piece.*
