logo

LiteLLM Supply Chain Attack: Inside the AI Breach That Exposed 2,500+ Companies

ID: be20ec53-b0f5-50dd-8ff5-e3f1633a40b6

STIX ID: report--be20ec53-b0f5-50dd-8ff5-e3f1633a40b6

Feed Name: SOCRadar Blog

Threat Score
90/100

Date Published: 2026-08-13

Date Updated: 2026-08-14

Author: ameer

...
...

SOCRadar details the LiteLLM supply‑chain compromise in March 2026: TeamPCP (UNC6780) leveraged a hijacked Trivy scanner and unpinned dependencies to publish malicious LiteLLM releases to PyPI that executed at Python interpreter startup, stole a wide range of credentials (cloud, CI/CD, Kubernetes, AI keys), produced reconstructed exposure across 2,500+ organizations and ~434,000 CI/CD files, and saw the stolen data brokered and tied to ransomware affiliates — the report emphasizes broad rotation, pinning, and forensic response.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.