
2026-03-25 · 11 min read
LiteLLM Compromised on PyPI: How a Hijacked Maintainer Account Turned an LLM Gateway Into a Credential Stealer
LiteLLM versions 1.82.7 and 1.82.8 on PyPI were compromised by the TeamPCP threat actor group. The malicious packages stole credentials, deployed persistence via systemd, and performed lateral movement in Kubernetes clusters. The attack propagated from the earlier Trivy supply chain compromise through LiteLLM’s own CI/CD pipeline.
By Mohit Kumar







