Elon Musk
@elonmusk
Caveat emptor
Andrej Karpathy@karpathy· 24 mars 2026Software horror: litellm PyPI supply chain attack.
Simple `pip install litellm` was enough to exfiltrate SSH keys, AWS/GCP/Azure creds, Kubernetes configs, git credentials, env vars (all your API keys), shell history, crypto wallets, SSL private keys, CI/CD secrets, database
23:56 · 24 mars 2026 · 55,7 M vues
1,9 k
2,7 k
29,7 k