2,500+ Companies and 434,000 CI/CD Pipelines Exposed in the Largest AI Supply Chain Breach of 2026
ID: 679eb515-d64d-5ba6-9cc0-d3c5582fb53e
STIX ID: report--679eb515-d64d-5ba6-9cc0-d3c5582fb53e
Feed Name: CloudSEK Blog
CloudSEK reports that in March 2026 the financially motivated group Team PCP conducted a large AI-focused software supply-chain attack by injecting malicious code into LiteLLM PyPI releases (1.82.7 and 1.82.8) through a compromised Trivy-based CI pipeline; the payload (SANDCLOCK) escalated on CI runners to steal cloud credentials, SSH keys, Kubernetes tokens, and LLM API keys, exposing an estimated 2,500+ organizations and 434,000 CI/CD pipelines and creating high-risk downstream attack paths. The report documents affected high-confidence organizations, outlines the attack path and exposed data classes, and recommends broad credential rotation, log investigation, and validation while noting FBI and industry advisories.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
