logo

TeamPCP Hackers Weaponize LiteLLM for Credential Harvesting Attacks

ID: 66ccd7aa-90ee-52e1-9056-205ba4940796

STIX ID: report--66ccd7aa-90ee-52e1-9056-205ba4940796

Feed Name: Cyber Press

Threat Score
85/100

Date Published: 2026-05-27

Date Updated: 2026-05-27

Author: Varshini

...
...

A sophisticated supply-chain campaign attributed to a group called TeamPCP weaponized the open-source LiteLLM Python library by publishing malicious PyPI releases after compromising a Trivy scanner used in LiteLLM’s CI/CD. The malicious packages (v1.82.7 and v1.82.8) inject code to harvest AI provider API keys, cloud metadata, and local configuration files, encrypt and exfiltrate the stolen data, and establish persistence via a backdoor and regular C2 polling; the report includes file hashes and exfiltration/C2 URLs as IOCs.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.