
Steve Gibson reveals the LightLLM PyPI exploit, a supply chain attack that nearly infected millions of downloads.
As heard by us
A sharp Security Now episode on LiteLLM, click-fix attacks, quantum risk, and the strange theater of wartime surveillance.
Security Now builds this episode around LiteLLM, framed as a PyPI nightmare for coders, then widens out to click-fix attacks, Apple's response, Linux age verification, and Google's newly aggressive 2029 quantum warning.
Why you'd press play
Malicious code slipped into a popular AI Python package, and this episode breaks down exactly how it happened.
Listen to the show on