A security alert has been issued for cryptocurrency developers following a significant data breach involving LiteLLM. According to PANews, 23pds, the Chief Information Security Officer at SlowMist Technology, has advised developers to conduct immediate security checks. Reports indicate that attackers exploiting a vulnerability in LiteLLM have stolen approximately 300GB of data and around 500,000 credentials. Developers are urged to verify and rotate relevant keys and credentials, review logs and access records, and assess the exposure of sensitive data to prevent severe losses similar to the Trust Wallet incident.
Previously, SlowMist reported that LiteLLM experienced a PyPI supply chain attack, where malicious files were implanted to steal sensitive information, including cryptocurrency wallets.