Threats · 165 days ago
TeamPCP pushed credential-stealing malware into BerryAI's LiteLLM PyPI package (v1.82.7 and v1.82.8) on 2026-03-24. The malware collected SSH keys, cloud credentials, Kubernetes secrets, TLS keys and other secrets and established persistent backdoors for lateral movement. Both malicious releases were removed; v1.82.6 is the last known clean release.
12 sources covering this story
Blast Radius of TeamPCP Attacks Expands Amid Hacker Infighting
As organizations disclose breaches tied to TeamPCP's supply chain attacks, ShinyHunters and Lapsus$ are creating a murky situation for enterprises.
Weaponizing the Protectors: TeamPCP’s Multi-Stage Supply Chain Attack on Security Infrastructure
TeamPCP continues its string of supply chain attacks, and announces a partnership with Vect ransomware group.
TeamPCP’s attack spree slows, but threat escalates with ransomware pivot - Help Net Security
TeamPCP has shifted from supply chain expansion to monetization of existing credential harvests by partnering with ransomware attackers.
Telnyx Targeted in Growing TeamPCP Supply Chain Attack
Two malicious versions of the popular SDK were uploaded to the PyPI registry, targeting Windows, macOS, and Linux.
TeamPCP Pushes Malicious Telnyx Versions to PyPI, Hides Stealer in WAV Files
Malicious telnyx 4.87.1/4.87.2 on PyPI used audio steganography March 27, 2026, enabling cross-platform credential theft.
Backdoored Telnyx PyPI package pushes malware hidden in WAV audio
TeamPCP hackers compromised the Telnyx package on the Python Package Index today, uploading malicious versions that deliver credential-stealing malware hidden inside a WAV file.
TeamPCP Targets Telnyx Package in Latest Software Supply Chain Attack
Socket and Endor Labs discovered a new TeamPCP campaign leading to the delivery of credential-stealing malware
TeamPCP Supply Chain Campaign: Update 002 - Telnyx PyPI Compromise, Vect Ransomware Mass Affiliate Program, and First Named Victim Claim, Author: Kenneth Hartman
TeamPCP strikes again: Backdoored Telnyx PyPI package delivers malware - Help Net Security
TeamPCP continues is supply chain compromise rampage, with telnyx on PyPI being the latest maliciously modified package.
Client SDKs Can Be a Supply Chain Blind Spot
A compromised Telnyx Python SDK reveals a critical client SDK security gap in modern supply chain dependencies. This post explains how malicious code executed at import time, why SDKs bypass traditional security review, and how to mitigate the risk.
TeamPCP Expands Supply Chain Campaign With LiteLLM PyPI Compromise
Python package LiteLLM compromised with credential-stealing malware linked to TeamPCP threat group
LiteLLM PyPI packages compromised in expanding TeamPCP supply chain attacks - Help Net Security
A slew of supply chain attacks against popular open source tools and packages appears to have been orchestrated by TeamPCP cybercriminals.
Part of the PlainSec briefing for 2026-04-03