Skip to main content
Industry Watch

Largest AI Supply Chain Breach of 2026: 2,500 Global Companies, Including Nvidia, Lose 195TB of Data in 40-Minute Scrape

Technology media outlet Ars Technica published a post today (August 13), reporting that the LiteLLM API gateway poisoning incident that broke out in March this year affected approximately 2,500 companies worldwide during an attack window of about 40 minutes, resulting in the leakage of approximately 195TB of password data.

Largest AI Supply Chain Breach of 2026: 2,500 Global Companies, Including Nvidia, Lose 195TB of Data in 40-Minute Scrape

Technology media outlet Ars Technica published a post today (August 13), reporting that the LiteLLM API gateway poisoning incident that broke out in March this year affected approximately 2,500 companies worldwide during an attack window of about 40 minutes, resulting in the leakage of approximately 195TB of password data.

IT Home reported in March this year that LiteLLM, an AI infrastructure tool with an average of 95 million monthly installations, had been compromised through a supply chain poisoning attack.

LiteLLM is an open-source AI API gateway. As a key tool supporting the AI architectures of thousands of companies, it allows developers to call APIs from more than 100 providers, including OpenAI, Anthropic, and Azure, through a unified format.

Largest AI Supply Chain Breach of 2026: 2,500 Global Companies, Including Nvidia, Lose 195TB of Data in 40-Minute Scrape

According to data disclosed this week by security companies CloudSEK and Hudson Rock, attackers used the compromised version to collect and exfiltrate large quantities of password credentials during the approximately 40-minute attack window, affecting more than 2,500 organizations. They said this was the largest AI supply chain breach of 2026.

Largest AI Supply Chain Breach of 2026: 2,500 Global Companies, Including Nvidia, Lose 195TB of Data in 40-Minute Scrape

The exposed information included cloud keys, code repository tokens, SSH keys, Kubernetes keys, software package publishing credentials, environment variables, and AI provider keys.

Largest AI Supply Chain Breach of 2026: 2,500 Global Companies, Including Nvidia, Lose 195TB of Data in 40-Minute Scrape

The two companies analyzed a 195TB leaked file and found that approximately 434,000 credentials for CI/CD (continuous integration/continuous delivery) software pipelines were exposed in the security incident. These credentials were scattered throughout the massive dataset and involved a large number of organizations running LiteLLM.

Regarding the affected companies and institutions, the researchers said there was sufficient evidence that the following companies were impacted. The complete list can be viewed here:

Nvidia Corporation

Amazon Web Services (AWS)

Samsung Electronics

samsung.com

Salesforce

Cisco Systems, Inc.

F. Hoffmann-La Roche AG

ServiceNow

Siemens AG

S&P Global

Airbus US Space & Defense

John Deere

Regeneron Pharmaceuticals, Inc.

London Stock Exchange Group (LSEG)

Thomson Reuters

FedEx

Munich Re munichre.com

MediaTek Inc.

Volkswagen AG

Deloitte

The Kroger Co.

Siemens Energy

Thales Group

X (formerly Twitter)

Zscaler, Inc.

Epic Games

Orange S.A. Southern Australian Orange County

HP Inc.

Philips

Fortum Oyj

Vodafone Group Plc

Carl Zeiss AG

Deutsche Bahn AG

NGINX

BT Group

Liebherr

Krungthai Bank Public Company Limited

Roku

References

Largest AI Supply Chain Breach of 2026: LiteLLM Hack Impacts Thousands of Global Enterprises - Claim Your Ethical Disclosure

2,500+ Companies and 434,000 CI/CD Pipelines Exposed in the Largest AI Supply Chain Breach of 2026

Affected organisations