---
title: "Supply-chain attack on AI gateway tool exposed 2,500+ firms"
url: https://www.parallelquant.com/posts/supply-chain-attack-on-ai-gateway-tool-exposed-2-500-firms-867d36
source_name: "Ars Technica"
source_url: https://arstechnica.com/security/2026/08/terabytes-of-credentials-leaked-in-massive-supply-chain-attack/
published: 2026-08-12T21:43:21.000Z
topics: ["security"]
publisher: "Parallel Quant"
---

# Supply-chain attack on AI gateway tool exposed 2,500+ firms

*2026-08-12 · Source: [Ars Technica](https://arstechnica.com/security/2026/08/terabytes-of-credentials-leaked-in-massive-supply-chain-attack/)*

Attackers compromised the widely used LiteLLM AI gateway library by pushing two poisoned versions to PyPI, exposing cloud credentials, SSH keys, CI/CD secrets, and LLM API keys across more than 2,500 organizations and roughly 434,000 CI/CD pipelines. Affected companies reportedly span tech, finance, and manufacturing.

**Why it matters:** LiteLLM sits in the AI infrastructure stack of many companies' agent and API deployments, so this shows the fast-growing AI tooling supply chain is now a high-value attack target. It follows the same package-poisoning pattern as recent NPM/PyPI incidents, but at a scale specific to AI infrastructure.

**Topics:** security

---
Read the original: https://arstechnica.com/security/2026/08/terabytes-of-credentials-leaked-in-massive-supply-chain-attack/
Canonical: https://www.parallelquant.com/posts/supply-chain-attack-on-ai-gateway-tool-exposed-2-500-firms-867d36
Published by Parallel Quant — https://www.parallelquant.com
