Tell HN: Litellm 1.82.7 and 1.82.8 on PyPI are compromised 4 months ago
This is exactly what worries me about autonomous agents. A compromised package is bad. An agent that autonomously runs pip install with that package is a different problem. The attack surface moves with the agent.