Tell HN: Litellm 1.82.7 and 1.82.8 on PyPI are compromised
11–20 of 569 posts
Look like the Founder and CTO account has been compromised.
https://github.com/krrishdholakia
Re: Tell HN: Litellm 1.82.7 and 1.82.8 on PyPI are compromised
#12What is happening in this issue thread? Why are there 100+ satisfied slop comments?
Are they trying to slide stuff down? but it just bumps stuff up?
Re: Tell HN: Litellm 1.82.7 and 1.82.8 on PyPI are compromised
#13good i was too lazy to bump versions
Re: Tell HN: Litellm 1.82.7 and 1.82.8 on PyPI are compromised
#14pretty horrifying. I only use it as lightweight wrapper and will most likely move away from it entirely. Not worth the risk
Even just having an import statement for it is enough to trigger the malware in 1.82.8.
Re: Tell HN: Litellm 1.82.7 and 1.82.8 on PyPI are compromised
#15Besides main issue here, and the owners account being possibly compromised as well, there's like 170+ low quality spam comments in there.
I would expect better spam detection system from GitHub. This is hardly acceptable.
Re: Tell HN: Litellm 1.82.7 and 1.82.8 on PyPI are compromised
#16You can see it for yourself here: https://inspector.pypi.io/project/litellm/1.82.8/packages/fd...
[deleted]
Re: Tell HN: Litellm 1.82.7 and 1.82.8 on PyPI are compromised
#17teampcp taking credit?
https://github.com/krrishdholakia/blockchain/commit/556f2db3...
- # blockchain
- Implements a skeleton framework of how to mine using blockchain, including the consensus algorithms.
+ teampcp owns BerriAIRe: Tell HN: Litellm 1.82.7 and 1.82.8 on PyPI are compromised
#18What is happening in this issue thread? Why are there 100+ satisfied slop comments?
Attackers trying to stifle discussion, they did the same for trivy: https://github.com/aquasecurity/trivy/discussions/10420
Re: Tell HN: Litellm 1.82.7 and 1.82.8 on PyPI are compromised
#19More details here: https://futuresearch.ai/blog/litellm-pypi-supply-chain-attac...
[deleted]
Re: Tell HN: Litellm 1.82.7 and 1.82.8 on PyPI are compromised
#20Look like the Founder and CTO account has been compromised. https://github.com/krrishdholakia
[flagged]