supply-chain Malicious LiteLLM Releases Tied to Trivy Hack May Have Exposed 2,100+ Organizations A supply-chain attack linked to Aqua Security's Trivy scanner has resulted in the release of two malicious LiteLLM packages containing credential-stealing code. CloudSEK identified over 2,500 organizations potentially exposed, though the actual number of impacted systems is likely lower. The attack involved a compromis… The Hacker News · Aug 12, 2026 High CVE-2026-33634USEUsupply chaincredential theftpypi