The LiteLLM Supply Chain Attack Explained: What Happened, Who's Affected, and What to Do Now
On March 24, 2026, two malicious versions of the LiteLLM Python package were published to PyPI. They were live for less than three hours. LiteLLM has 3 million daily downloads and sits inside 36% of cloud environments. Here's exactly what happened and what you need to do right now.