# LiteLLM 供应链攻击中受影响的政府与商业数据及防止再次发生的措施

- 日期: 2026-09-10
- 收录: 2026-09-26
- 相关方: Mr Gerald Giam Yean Song · Mrs Josephine Teo
- 来源: https://sprs.parl.gov.sg/search/#/sprs3topic?reportid=written-answer-24768
- sgai: https://sgai.md/zh/debates/written-answer-24768/
- 许可：sgai 自产内容（摘要、译文、分析）CC BY 4.0，署名并链接 sgai.md 即可；逐字原文（国会记录、演讲、字幕、政策原文）© 原权利人，仅供引用。条款：https://github.com/meltflake/sgai/blob/main/DATA-LICENSE.md

## 为什么重要

LiteLLM 攻击只攻破一个政府用户账户，无证据显示政府数据被窃，但政府不掌握企业受影响全貌

## 摘要

工人党议员严燕松（Mr Gerald Giam Yean Song）书面询问数字发展与信息部长：LiteLLM 人工智能供应链攻击中，新加坡政府或商业实体哪些数据受损、采取了哪些补救行动、如何防止再次发生。数字发展与信息部长杨莉明（Mrs Josephine Teo）书面答复：LiteLLM 是广泛使用的开源 AI 软件，黑客用早前泄露中窃取的登录资料在软件更新中植入恶意代码。政府科技局（GovTech）迅速找出并通知受影响机构；攻击只攻破一个支持少数机构的用户账户，无证据显示任何政府数据被窃或受损。政府不完全掌握商业实体受影响情况，各公司应自行检查并作规定报告；新加坡计算机应急响应小组已发布通告。供应链攻击风险无法完全消除，政府将持续改进防范、检测与应对。

## 要点

- 黑客利用早前泄露中窃取的登录资料，在开源 AI 软件 LiteLLM 的更新中植入恶意代码。
- 政府科技局用扫描和检测工具识别受影响的政府机构并迅速通知。
- 攻击确认只攻破一个用户账户，该账户支持少数几个机构；受影响机构已更换可能外泄的登录资料，并检查系统记录中有无未经授权活动。
- 没有证据显示任何政府数据（包括政府持有的个人数据）被窃或受损。
- 政府并不完全掌握事件对商业实体的影响；新加坡计算机应急响应小组已发布通告，可在需要时提供网络安全指导和协助。
- 供应链攻击风险无法完全消除，政府将持续检讨和改进防范、检测与应对方式。

## 全文

31 号，严燕松先生询问数字发展与信息部长：(a) 在针对 LiteLLM 的人工智能（AI）供应链攻击中，新加坡政府或商业实体拥有的哪些类型数据受到损害；(b) 采取了哪些补救行动来保护丢失的个人和政府数据；以及 (c) 正采取什么措施防止再次发生。

杨莉明女士：LiteLLM 是被广泛使用的开源人工智能（AI）软件。黑客利用在早前一次泄露事件中窃取的登录资料，在软件更新中加入恶意代码，从而攻破了它。

政府科技局（GovTech）使用扫描和检测工具找出受影响的政府机构，并迅速通知了它们。经确认，这次攻击只攻破了一个用户账户，该账户为少数几个机构提供支持。受影响的机构已更换任何可能外泄的登录资料，并检查系统记录中是否有未经授权活动的迹象。没有证据显示任何政府数据，包括政府持有的个人数据，被窃取或受到损害。

政府并不完全掌握这起事件对商业实体造成的影响。每家公司都应检查自己的系统、修复任何问题并作出任何规定的报告。新加坡计算机应急响应小组已就这起事件发布通告，并可在需要时提供网络安全指导和协助。

针对软件供应链的攻击是持续存在的威胁。这些风险无法完全消除。不过，政府将持续检讨并改进防范、检测和应对此类攻击的方式，使类似事件更不容易发生，造成的损害也更小。

## Hansard (original, English)

© Parliament of Singapore — reproduced for reference only.

31 Mr Gerald Giam Yean Song asked the Minister for Digital Development and Information (a) what types of data owned by the Government or commercial entities in Singapore were compromised in the artificial intelligence (AI) supply chain attack on LiteLLM; (b) what remedial actions were taken to safeguard any personal and Government data lost; and (c) what is being done to prevent a recurrence.

Mrs Josephine Teo : LiteLLM is widely used open-source artificial intelligence (AI) software. Hackers compromised it by using login details stolen in an earlier breach to add malicious code to software updates.

GovTech used scanning and detection tools to identify the affected Government agencies and informed them quickly. The attack was confirmed to have compromised only one user account, which supported a small number of agencies. The affected agencies changed any login details that might have been exposed and checked their system records for signs of unauthorised activity. There is no evidence that any Government data, including personal data held by the Government, was stolen or compromised.

The Government does not have a complete picture of how the incident affected commercial entities. Each company should check its own systems, fix any problems and make any required reports. The Singapore Cyber Emergency Response Team has published an advisory on the incident and can provide cybersecurity guidance and help where needed.

Attacks on software supply chains are an ongoing threat. The risks cannot be removed completely. However, the Government will keep reviewing and improving how it prevents, detects and responds to such attacks, so that similar incidents are less likely and cause less harm.
