Threats & Adversaries · Supply Chain

TeamPCP Injects Credential-Stealer into LiteLLM Package

TeamPCP published malicious Telnyx Python SDK releases 4.87.1 and 4.87.2 to PyPI that execute a credential harvester at import. The implant targets Windows, Linux and macOS and exfiltrates secrets to a TeamPCP-controlled server. Researchers say delivery uses WAV audio steganography to fetch platform-specific payloads; PyPI quarantined the releases.

12 sources · Apr 3

Timeline

Sources

Part of the PlainSec briefing for 2026-03-27

Every edition of this story: TeamPCP Injects Credential-Stealer into LiteLLM Package

More from today