Three actively exploited AI orchestration platforms — LiteLLM, RAGFlow, and Kestra — are giving attackers a single entry point to every model provider credential an organization holds. See the CVE chains, IOCs, and detection rules from Brandefense’s INT-2608-e7a5 campaign analysis.