security1 distinct publisher
The 2,500-org compromise was a Trivy problem. LiteLLM was the closing act.
SOCRadar's record-level data puts 95 percent of identified victims before the poisoned LiteLLM packages ever hit PyPI. Anyone who rotated only what LiteLLM touched is still exposed.
Publishers:securityweek.com
Reality
- Evidence52
- Adoption68
- Hype gap+12
- Incentives66
- Confidence55