5 items across 3 sections
We obtained the actual compromised litellm packages, set up a disposable EC2 instance with honeypot credentials and mitmproxy, and detonated the malware. Full evidence: fork bomb, credential theft in under 2 seconds, IMDS queries, AWS API calls, and C2 exfiltration.
A deep technical breakdown of how threat actor TeamPCP compromised Trivy, pivoted to LiteLLM, and turned a popular AI proxy into a credential-stealing weapon targeting AWS IMDS, Secrets Manager, and Kubernetes.
Complete guide to Amazon EKS covering cluster creation with eksctl, managed node groups, Fargate on EKS, Kubernetes manifests, IRSA, EKS Pod Identity, AWS Load Balancer Controller, Karpenter autoscaling, and the ECS vs EKS decision guide.
Our AWS security experts can help you implement best practices across all these topics.
Contact Us