SNIPPET ·
See https://github.com/BerriAI/litellm/issues/24512.
The
litellm==1.82.8wheel package on PyPI contains a malicious.pthfile (litellm_init.pth, 34,628 bytes) that automatically executes a credential-stealing script every time the Python interpreter starts — noimport litellmrequired.
How the hell?