Off Guard: Breaking LiteLLM from authentication bypass to cloud compromise

From the source: Wiz Blog

How default keys, unauthenticated MCP sessions, and custom code guardrails expose cloud AI infrastructure to root-level remote code execution and IAM theft.

Read the full story on Wiz Blog
Originally published by Wiz Blog on 10 Sept 2026. Techarda links to the original rather than republishing it. Read the full article →

Have you worked with this?

The story is what was announced. Nobody has discussed it yet, so if it touches your team, a short post about what you’ve seen helps the next reader.

Start the discussion

More from Wiz

Recent updates from Wiz, so you can tell whether this is a one-off or part of a pattern.

All Wiz news →
SecurityNew

Introducing the Wiz Partner Alliance Managed Service Provider Program

Empowering managed services partners to deliver world-class cloud and AI security at scale

Wiz·via Wiz Blog
Security

The Infostealer Incursion: How Stolen Credentials Breach Cloud, Code, and AI Environments

Wiz Research analyzes NordStellar data to map the credentials targeted by infostealer families and assess their potential impact across cloud, code, and AI environments.

Wiz·via Wiz Blog
Security

Wiz Named a Leader in The Forrester Wave™: Proactive Security Platforms, Q3 2026

Forrester’s Proactive Security Platforms evaluation rated Wiz with top scores across eight areas, reflecting our commitment to securing the AI era

Wiz·via Wiz Blog

More in Security

What other companies in Security are doing. The category page shows who’s active, side by side.

Compare companies in Security →
SecurityWhy it matters

Threat Actors Use Google Ads To Target Ledger Users

In August 2026, Zscaler ThreatLabz analyzed a phishing campaign that used fraudulent Google ads to target Ledger hardware wallet users. The ads redirected users through Google Cloud Storage and Vercel to a Google Sites page containing a phishing page impersonating Ledger in an iframe. During our analysis, the Vercel redirect appeared to change every 15-20 minutes. There, a fake…

Zscaler·via Zscaler ThreatLabz
SecurityNew

The Developer is the New Perimeter: How Supply Chain Attacks Are Becoming Cloud Breaches

A routine package install can open the door to a cloud breach. Learn how attackers exploit developer credentials. Discover practical steps to contain exposure and protect your cloud environment.

Qualys·via Qualys Blog
SecurityNew

Next.js applications, powered by Vite: introducing Vinext 1.0

Vinext 1.0 graduates from an AI experiment to a production-ready framework, letting developers run Next.js apps on Vite. This release brings advanced cache warming, broader compatibility, and an automated testing pipeline.

Cloudflare·via Cloudflare Blog
SecurityNew

Introducing cf: the agentic CLI for the entire Cloudflare API

We are releasing cf, our new command-line tool that mirrors the entire Cloudflare API and supports programmatic TypeScript configuration. We are also open-sourcing Forge, our internal SDK generator.

Cloudflare·via Cloudflare Blog