<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Cicd on imsj</title><link>https://imsj-blog.pages.dev/tags/cicd/</link><description>Recent content in Cicd on imsj</description><generator>Hugo</generator><language>en</language><lastBuildDate>Fri, 14 Aug 2026 00:00:00 +0000</lastBuildDate><atom:link href="https://imsj-blog.pages.dev/tags/cicd/index.xml" rel="self" type="application/rss+xml"/><item><title>New disclosure, old attack: CloudSEK's LiteLLM/TeamPCP findings</title><link>https://imsj-blog.pages.dev/posts/cloudsek-litellm-teampcp-disclosure/</link><pubDate>Fri, 14 Aug 2026 00:00:00 +0000</pubDate><guid>https://imsj-blog.pages.dev/posts/cloudsek-litellm-teampcp-disclosure/</guid><description>&lt;p&gt;You may have seen CloudSEK&amp;rsquo;s disclosure on the data exposed through the LiteLLM/TeamPCP hack.&lt;/p&gt;
&lt;p&gt;The numbers are big: CloudSEK estimates that more than 2,500 organisations and 434,000 CI/CD pipelines were potentially exposed. The data included cloud credentials, repository tokens, SSH keys, Kubernetes secrets, package-publishing credentials and AI provider keys.&lt;/p&gt;
&lt;figure&gt;&lt;img src="https://imsj-blog.pages.dev/posts/cloudsek-litellm-teampcp-disclosure/cloudsek-disclosure-headline.jpg"
			alt="CloudSEK disclosure reporting more than 2,500 companies and 434,000 CI/CD pipelines potentially exposed"&gt;&lt;figcaption&gt;
			&lt;p&gt;CloudSEK&amp;rsquo;s disclosure, published 11 August 2026.&lt;/p&gt;
		&lt;/figcaption&gt;
&lt;/figure&gt;

&lt;p&gt;That is serious. But an important bit of context is getting lost:&lt;/p&gt;</description></item></channel></rss>