chiprook
← Security
SecuritySeptember 22, 2026, 10:22

LiteLLM supply chain backdoor: malicious 1.82.7 and 1.82.8 on PyPI

On March 24, 2026, two backdoored LiteLLM versions, 1.82.7 and 1.82.8, sat on PyPI for roughly three hours. Attackers calling themselves TeamPCP stole PyPI publishing credentials via a compromised Trivy GitHub Action in LiteLLM's CI, and a litellm_init.pth file executed on every Python interpreter startup, harvesting SSH keys, cloud tokens, Kubernetes secrets and LLM API keys.

LiteLLM supply chain backdoor: malicious 1.82.7 and 1.82.8 on PyPI
#LiteLLM#PyPI#Trivy
Read next
Security

Expert warns shadow AI and autonomous agents bypass security

Security

Prismor: open-source runtime control plane for AI agents

Security

CVE-2026-8932: curl/libcurl mTLS connection reuse flaw

Security

Goldman Sachs invests $400m in Israeli cybersecurity firm Cyera