95% of the 2,500 organizations supposedly affected by the LiteLLM supply chain attack were exposed by the Trivy hack.

Malicious LiteLLM PyPI releases stole cloud and SSH keys, Kubernetes tokens, and other secrets, potentially exposing 2,500+ organizations.

The March 2026 LiteLLM supply chain attack likely affected over 2,500 organizations and exposed over 430,000 CI/CD pipelines.