LiteLLM is widely used in LLM/agent pipelines, which makes this supply chain attack particularly concerning. Malicious releases (via compromised CI credentials) effectively turned it into a vector for extracting API keys, cloud creds, and other secrets from runtime environments. Given how central to