If anyone thinks supply chain attacks are only an npm or JS problem, here’s an example from the Python and LLM world.
A single `pip install litellm` and all your access keys are stolen.
Start thinking about systemic defense against supply chain attacks before it's too late.
https://futuresearch.ai/blog/litellm-pypi-supply-chain-attack/
