newsarstechnica.comIrregularChat: Purple Team1d ago
A major supply-chain attack on the open source AI development tool LiteLLM exposed terabytes of sensitive credentials belonging to thousands of organizations, including Microsoft, Amazon, Cisco, Samsu
An open source package with more than 1 million monthly downloads, `element-data`, was compromised after attackers exploited a flaw in the developers’ GitHub-based workflow. The vulnerability let the