# Government and Commercial Data Compromised in LiteLLM Supply Chain Attack and Measures to Prevent Recurrence

- Date: 2026-09-10
- Added: 2026-09-26
- Who: Mr Gerald Giam Yean Song · Mrs Josephine Teo
- Source: https://sprs.parl.gov.sg/search/#/sprs3topic?reportid=written-answer-24768
- sgai: https://sgai.md/debates/written-answer-24768/
- License: sgai-authored content (summaries, translations, analysis) is CC BY 4.0 — attribute and link to sgai.md. Verbatim source text (Hansard, speeches, transcripts, policy documents) remains © its original rights holders and is reproduced for reference only. Terms: https://github.com/meltflake/sgai/blob/main/DATA-LICENSE.md

## Why it matters

The LiteLLM attack compromised only one Government user account with no evidence of Government data theft, but the Government lacks a full picture of the impact on companies.

## Summary

Workers' Party MP Gerald Giam Yean Song asked the Minister for Digital Development and Information what Government or commercial data in Singapore was compromised in the AI supply chain attack on LiteLLM, what remedial actions were taken, and how a recurrence will be prevented. Minister Josephine Teo replied that LiteLLM is widely used open-source AI software, compromised by hackers who used login details stolen in an earlier breach to add malicious code to software updates. GovTech used scanning and detection tools to identify affected agencies and informed them quickly; only one user account, supporting a small number of agencies, was compromised. The agencies changed exposed login details and checked system records, and there is no evidence that any Government data, including personal data, was stolen or compromised. The Government does not have a complete picture of the impact on commercial entities; companies should check their own systems and make required reports, and SingCERT has published an advisory. Supply chain risks cannot be removed completely, but the Government will keep improving prevention, detection and response.

## Key points

- Hackers used login details stolen in an earlier breach to add malicious code to software updates of the open-source AI software LiteLLM.
- GovTech used scanning and detection tools to identify the affected Government agencies and informed them quickly.
- The attack was confirmed to have compromised only one user account, which supported a small number of agencies; they changed potentially exposed login details and checked system records for unauthorised activity.
- There is no evidence that any Government data, including personal data held by the Government, was stolen or compromised.
- The Government does not have a complete picture of the impact on commercial entities; the Singapore Cyber Emergency Response Team has published an advisory and can provide guidance and help.
- Supply chain attack risks cannot be removed completely, and the Government will keep reviewing and improving how it prevents, detects and responds to them.

## Full text

© Parliament of Singapore — reproduced for reference only.

31 Mr Gerald Giam Yean Song asked the Minister for Digital Development and Information (a) what types of data owned by the Government or commercial entities in Singapore were compromised in the artificial intelligence (AI) supply chain attack on LiteLLM; (b) what remedial actions were taken to safeguard any personal and Government data lost; and (c) what is being done to prevent a recurrence.

Mrs Josephine Teo : LiteLLM is widely used open-source artificial intelligence (AI) software. Hackers compromised it by using login details stolen in an earlier breach to add malicious code to software updates.

GovTech used scanning and detection tools to identify the affected Government agencies and informed them quickly. The attack was confirmed to have compromised only one user account, which supported a small number of agencies. The affected agencies changed any login details that might have been exposed and checked their system records for signs of unauthorised activity. There is no evidence that any Government data, including personal data held by the Government, was stolen or compromised.

The Government does not have a complete picture of how the incident affected commercial entities. Each company should check its own systems, fix any problems and make any required reports. The Singapore Cyber Emergency Response Team has published an advisory on the incident and can provide cybersecurity guidance and help where needed.

Attacks on software supply chains are an ongoing threat. The risks cannot be removed completely. However, the Government will keep reviewing and improving how it prevents, detects and responds to such attacks, so that similar incidents are less likely and cause less harm.
