Software horror: litellm PyPI supply chain attack. Simple `pip install litellm` was enough to exfi...
By @karpathy
Karpathy details a major supply chain attack on litellm PyPI package that could exfiltrate SSH keys, cloud credentials, crypto wallets, and more. The poisoned package was up for ~1 hour, discovered because the attacker's code had a bug causing RAM crashes. Karpathy argues for reducing dependencies and using LLMs to 'yoink' functionality instead.