Risky Business #830 -- LiteLLM and security scanner supply chains compromised
Supply-chain compromises of LiteLLM and security-scanning toolchains show attackers increasingly targeting developer infrastructure, with one campaign bundling an anti-Iran wiper alongside the backdoor.
Summary written by editorial AI · Source link below
On this week’s show, Patrick Gray, Adam Boileau and James WIlson discuss the week’s cybersecurity news. They talk through:
TeamPCP’s supply chain attack on Github, and they threw in an anti-Iran wiper, because why not?! Anthropic hooks up its models to just… use your whole computer After Stryker’s Very Bad Day, CISA says maybe add some more controls around your Intune? Another iOS exploit kit shows up in the cyber bargain-bin The FTC decides to ban… all new home routers?! U wot m8?!
Editorial Analysis
AI-framework and scanner dependencies sit deep in CI/CD pipelines; their compromise can silently propagate malicious code into production builds across thousands of downstream projects.
Pin and verify checksums for AI-framework and security-scanner dependencies; implement automated SBOM diffing to detect unexpected changes in upstream packages.
Attackers compromised widely used AI and security-scanning tools, threatening any organisation whose build pipelines depend on them.
Forward-looking interpretation drafted by editorial AI under human review — not a reproduction of the source. See methodology.
External link — opens at Risky Business in a new tab.
More from the Threat Intel Desk
- Attackers Combo Up Evasion Tactics for BEC Phishing20 Jul
- New HollowGraph malware uses Microsoft Graph for stealthy C2 comms20 Jul
- Exposed Server Reveals AI-Assisted Phishing Toolkit Behind WebDAV Malware Campaign20 Jul
- Hackers were inside South Korea's diplomat training system for 9 months20 Jul
- Romania races to restore land registry after cyberattack disrupts property market20 Jul